CVE-2024-24786

Source
https://cve.org/CVERecord?id=CVE-2024-24786
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-24786.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-24786
Aliases
Downstream
AZL (62)
CGA (1492)
CLEANSTART (39)
CLSA (1)
DEBIAN (1)
ECHO (1)
MINI (12)
OESA (4)
openSUSE (7)
RHSA (17)
RLSA (3)
SUSE (15)
UBUNTU (1)
Related
Withdrawn
2026-01-27T04:20:09Z
Published
2024-03-05T23:15:07Z
Modified
2026-07-17T20:58:36Z
Summary
[none]
Details

The protojson.Unmarshal function can enter an infinite loop when unmarshaling certain forms of invalid JSON. This condition can occur when unmarshaling into a message which contains a google.protobuf.Any value, or when the UnmarshalOptions.DiscardUnknown option is set.

References

Affected packages