Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-0225 | Remarshal prior to v0.17.1 expands YAML alias nodes unlimitedly, hence Remarshal is vulnerable to Billion Laughs Attack. Processing untrusted YAML files may cause a denial-of-service (DoS) condition. |
Github GHSA |
GHSA-gw7g-qr8w-3448 | Remarshal expands YAML alias nodes unlimitedly, hence Remarshal is vulnerable to Billion Laughs Attack |
Wed, 08 Jan 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2025-01-08T21:35:11.153Z
Reserved: 2023-10-31T00:29:57.924Z
Link: CVE-2023-47163
Updated: 2024-08-02T21:01:22.828Z
Status : Modified
Published: 2023-11-13T03:15:09.743
Modified: 2024-11-21T08:29:52.983
Link: CVE-2023-47163
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA