A vulnerability in the .NET SDK of Apache Avro allows an attacker to allocate excessive resources, potentially causing a denial-of-service attack. This issue affects .NET applications using Apache Avro version 1.10.2 and prior versions. Users should update to version 1.11.0 which addresses this issue.
{
"extracted_events": [
{
"introduced": "0"
},
{
"fixed": "1.11.0"
}
],
"source": "CPE_RANGE",
"cpe": "cpe:2.3:a:apache:avro:*:*:*:*:*:.net:*:*"
}