Description
sshpk is vulnerable to ReDoS when parsing crafted invalid public keys.
Remediation
References
https://hackerone.com/reports/319593
Related Vulnerabilities
CVE-2020-17519 Vulnerability in maven package org.apache.flink:flink-runtime_2.11
CVE-2023-50709 Vulnerability in npm package @cubejs-backend/api-gateway
CVE-2023-6134 Vulnerability in maven package org.keycloak:keycloak-services
CVE-2019-20444 Vulnerability in maven package io.netty:netty-all
CVE-2020-28052 Vulnerability in maven package org.bouncycastle:bcprov-jdk15on