Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-jr77-8gx4-h5qh: MessagePack for Golang subject to DoS via Unmarshal panic

Unmarshal can panic on some inputs, possibly allowing for denial of service attacks. This issue has been patched in version 2.1.1.

ghsa
#dos#git

MessagePack for Golang subject to DoS via Unmarshal panic

High severity GitHub Reviewed Published Nov 11, 2022 • Updated Nov 16, 2022

Related news

CVE-2022-41719: Many panics/crashes when fuzzing · Issue #31 · shamaton/msgpack

Unmarshal can panic on some inputs, possibly allowing for denial of service attacks.