Description
A stack overflow in Jettison before v1.5.2 allows attackers to cause a Denial of Service (DoS) via crafted JSON data.
Remediation
References
https://github.com/jettison-json/jettison/issues/54
https://lists.debian.org/debian-lts-announce/2022/12/msg00045.html
https://www.debian.org/security/2023/dsa-5312
Related Vulnerabilities
CVE-2022-4348 Vulnerability in maven package com.ruoyi:ruoyi-common
CVE-2021-32850 Vulnerability in npm package @claviska/jquery-minicolors
CVE-2022-31053 Vulnerability in maven package com.clever-cloud:biscuit-java
CVE-2020-7663 Vulnerability in maven package org.webjars.npm:websocket-extensions
CVE-2021-33036 Vulnerability in maven package org.apache.hadoop:hadoop-yarn-server-common