hutool v5.8.21 was discovered to contain a buffer overflow via the component JSONUtil.parse().
References
| Link | Resource |
|---|---|
| https://github.com/dromara/hutool/issues/3289 | Exploit Issue Tracking Vendor Advisory |
| https://github.com/dromara/hutool/issues/3289 | Exploit Issue Tracking Vendor Advisory |
Configurations
History
21 Nov 2024, 08:22
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2023-09-08 22:15
Updated : 2024-11-21 08:22
NVD link : CVE-2023-42278
Mitre link : CVE-2023-42278
CVE.ORG link : CVE-2023-42278
JSON object : View
Products Affected
hutool
- hutool
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
