CVE-2019-6292
- EPSS 0.45%
- Veröffentlicht 15.01.2019 00:29:00
- Zuletzt bearbeitet 21.11.2024 04:46:23
An issue was discovered in singledocparser.cpp in yaml-cpp (aka LibYaml-C++) 0.6.2. Stack Exhaustion occurs in YAML::SingleDocParser, and there is a stack consumption problem caused by recursive stack frames: HandleCompactMap, HandleMap, HandleFlowSe...
CVE-2019-6285
- EPSS 0.31%
- Veröffentlicht 14.01.2019 22:29:00
- Zuletzt bearbeitet 21.11.2024 04:46:22
The SingleDocParser::HandleFlowSequence function in yaml-cpp (aka LibYaml-C++) 0.6.2 allows remote attackers to cause a denial of service (stack consumption and application crash) via a crafted YAML file.
CVE-2018-20573
- EPSS 0.67%
- Veröffentlicht 28.12.2018 16:29:05
- Zuletzt bearbeitet 21.11.2024 04:01:45
The Scanner::EnsureTokensInQueue function in yaml-cpp (aka LibYaml-C++) 0.6.2 allows remote attackers to cause a denial of service (stack consumption and application crash) via a crafted YAML file.
CVE-2018-20574
- EPSS 0.67%
- Veröffentlicht 28.12.2018 16:29:05
- Zuletzt bearbeitet 21.11.2024 04:01:45
The SingleDocParser::HandleFlowMap function in yaml-cpp (aka LibYaml-C++) 0.6.2 allows remote attackers to cause a denial of service (stack consumption and application crash) via a crafted YAML file.
CVE-2017-11692
- EPSS 0.64%
- Veröffentlicht 30.07.2017 17:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The function "Token& Scanner::peek" in scanner.cpp in yaml-cpp 0.5.3 and earlier allows remote attackers to cause a denial of service (assertion failure and application exit) via a '!2' string.
CVE-2017-5950
- EPSS 0.32%
- Veröffentlicht 03.04.2017 05:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The SingleDocParser::HandleNode function in yaml-cpp (aka LibYaml-C++) 0.5.3 allows remote attackers to cause a denial of service (stack consumption and application crash) via a crafted YAML file.