logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2024-26134

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2024-26134

Description:
cbor2 provides encoding and decoding for the Concise Binary Object Representation (CBOR) (RFC 8949) serialization format. Starting in version 5.5.1 and prior to version 5.6.2, an attacker can crash a service using cbor2 to parse a CBOR binary by sending a long enough object. Version 5.6.2 contains a patch for this issue.
Last updated date:
01/02/2025
Type:
exploit
Confidence:
HIGH
Date of publishing:
01/02/2025
Reference url to background

https://github.com/agronholm/cbor2/security/advisories/GHSA-375g-39jq-vq7m

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2025

Privacy Policy