CVE-2013-6401
EPSS 0.34%Published: 3/21/2014Modified: 4/28/2026
Also known as:DEBIAN-CVE-2013-6401
Description
Jansson, possibly 2.4 and earlier, does not restrict the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via a crafted JSON document.
Affected packages (1)
- Debian/janssonfrom 0, < 2.6-1