Json-smart is a performance focused, JSON processor lib.
Security Fix(es):
A security issue was found in Netplex Json-smart 2.5.0 through 2.5.1. When loading a specially crafted JSON input, containing a large number of ’{’, a stack exhaustion can be trigger, which could allow an attacker to cause a Denial of Service (DoS). This issue exists because of an incomplete fix for CVE-2023-1370.(CVE-2024-57699)
{ "severity": "High" }
{ "noarch": [ "json-smart-2.5.2-1.oe2403.noarch.rpm", "json-smart-javadoc-2.5.2-1.oe2403.noarch.rpm", "json-smart-2.5.2-1.oe2403sp1.noarch.rpm", "json-smart-javadoc-2.5.2-1.oe2403sp1.noarch.rpm" ], "src": [ "json-smart-2.5.2-1.oe2403.src.rpm", "json-smart-2.5.2-1.oe2403sp1.src.rpm" ] }