CVE Database
/

CVE-2024-23684

Back to search

CVE-2024-23684

Published: Jan 19, 2024

Modified: Nov 29, 2025

PUBLISHED

Description

Inefficient algorithmic complexity in DecodeFromBytes function in com.upokecenter.cbor Java implementation of Concise Binary Object Representation (CBOR) versions 4.0.0 to 4.5.1 allows an attacker to cause a denial of service by passing a maliciously crafted input. Depending on an application's use of this library, this may be a remote attacker.

VendorProductVersions

Unknown

com.upokecenter:cbor

affected
4.0.0 - < 4.5.1

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now