PT-2022-11763 · Apache+1 · Apache Avro+1
Philip Sanetra
·
Published
2022-01-06
·
Updated
2023-12-22
·
CVE-2021-43045
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Apache Avro versions 1.10.2 and prior versions
Description
A vulnerability in the .NET SDK of Apache Avro allows an attacker to allocate excessive resources, potentially causing a denial-of-service attack.
Recommendations
For Apache Avro versions 1.10.2 and prior versions, update to version 1.11.0 to address this issue.
Fix
DoS
Allocation of Resources Without Limits
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Apache Avro