logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2021-22569

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2021-22569

Description:
An issue in protobuf-java allowed the interleaving of com.google.protobuf.UnknownFieldSet fields in such a way that would be processed out of order. A small malicious payload can occupy the parser for several minutes by creating large numbers of short-lived objects that cause frequent, repeated pauses. We recommend upgrading libraries beyond the vulnerable versions.
Last updated date:
04/18/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
01/14/2022
Reference url to background

https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=39330

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2026

Privacy Policy