A security issue was found in Netplex Json-smart 2.5.0 through 2.5.1. When loading a specially crafted JSON input, containing a large number of ’{’, a stack exhaustion can be trigger, which could allow an attacker to cause a Denial of Service (DoS). This issue exists because of an incomplete fix for CVE-2023-1370.
Metrics
Affected Vendors & Products
References
History
Thu, 03 Apr 2025 03:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Redhat
Redhat apache Camel Spring Boot Redhat camel Quarkus |
|
CPEs | cpe:/a:redhat:apache_camel_spring_boot:4.8.5 cpe:/a:redhat:camel_quarkus:3 |
|
Vendors & Products |
Redhat
Redhat apache Camel Spring Boot Redhat camel Quarkus |
Tue, 18 Mar 2025 03:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Title | json-smart: Potential DoS via stack exhaustion (incomplete fix for CVE-2023-1370) | |
References |
| |
Metrics |
threat_severity
|
threat_severity
|
Thu, 06 Feb 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-674 | |
Metrics |
cvssV3_1
|
Wed, 05 Feb 2025 21:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A security issue was found in Netplex Json-smart 2.5.0 through 2.5.1. When loading a specially crafted JSON input, containing a large number of ’{’, a stack exhaustion can be trigger, which could allow an attacker to cause a Denial of Service (DoS). This issue exists because of an incomplete fix for CVE-2023-1370. | |
References |
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-02-06T15:15:17.536Z
Reserved: 2025-01-09T00:00:00.000Z
Link: CVE-2024-57699

Updated: 2025-02-06T15:14:58.541Z

Status : Received
Published: 2025-02-05T22:15:33.183
Modified: 2025-02-06T16:15:41.170
Link: CVE-2024-57699
