CVE-2024-21909
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Jan 3, 2024
Updated: Feb 8, 2024
CWE ID 407
Summary
CVE-2024-21909 is a denial-of-service vulnerability affecting PeterO.Cbor versions 4.0.0 through 4.5.0. An attacker can exploit this issue by supplying crafted data to the DecodeFromBytes or other decoding functions in PeterO.Cbor, triggering a denial-of-service condition. If the library is used inappropriately, an unauthenticated and remote attacker might successfully cause the denial-of-service incident.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share