MessagePack for C# and Unity before version 1.9.11 and 2.1.90 has a vulnerability where untrusted data can lead to DoS attack due to hash collisions and stack overflow. Review the linked GitHub Security Advisory for more information and remediation steps.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: GitHub_M
Published: 2020-01-31T17:50:14
Updated: 2020-02-24T22:55:06
Reserved: 2020-01-02T00:00:00
Link: CVE-2020-5234
JSON object: View
NVD Information
Status : Modified
Published: 2020-01-31T18:15:11.860
Modified: 2020-02-24T23:15:13.517
Link: CVE-2020-5234
JSON object: View
Redhat Information
No data.