HomeDefault status
unaffected
Any version before 0.33.0
affected
Description
An attacker can craft an input to the Parse functions that would be processed non-linearly with respect to its length, resulting in extremely slow parsing. This could cause a denial of service.
Problem types
CWE-405: Asymmetric Resource Consumption (Amplification)
Product status
Any version before 0.33.0
Credits
Guido Vranken
References
security.netapp.com/advisory/ntap-20250221-0001/
groups.google.com/...g-announce/c/wSCRmFnNmPA/m/Lvcd0mRMAwAJ