Description
sshpk is vulnerable to ReDoS when parsing crafted invalid public keys.
Remediation
References
https://hackerone.com/reports/319593
Related Vulnerabilities
CVE-2022-39246 Vulnerability in maven package org.matrix.android:matrix-android-sdk2
CVE-2023-47324 Vulnerability in maven package org.silverpeas.core:silverpeas-core
CVE-2021-27644 Vulnerability in maven package org.apache.dolphinscheduler:dolphinscheduler-server
CVE-2021-31409 Vulnerability in maven package com.vaadin:vaadin-compatibility-server