GHSA-fj2w-wfgv-mwq6
HIGHCVE-2024-23684Due to this library's use of an inefficient algorithm, it is vulnerable to a denial of service attack when a maliciously crafted input is passed to DecodeFromBytes or other CBOR decoding mechanisms in this library.
- Affected
- >= 4.0.0, < 4.5.1
- Fixed in
- 4.5.1
- Weakness
- CWE-407
- Published
- 2022-01-21
- Source
- github