VYPR

Jansson

by Jansson Project

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2016-4425Med0.426.50.01May 17, 2016Jansson 2.7 and earlier allows context-dependent attackers to cause a denial of service (deep recursion, stack consumption, and crash) via crafted JSON data.
CVE-2013-64010.000.00Mar 21, 2014Jansson, possibly 2.4 and earlier, does not restrict the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via a crafted JSON document.