CVE-2024-2410

Severity CVSS v4.0:
Pending analysis
Type:
CWE-416 Use After Free
Publication date:
03/05/2024
Last modified:
22/07/2025

Description

The JsonToBinaryStream() function is part of the protocol buffers C++ implementation and is used to parse JSON from a stream. If the input is broken up into separate chunks in a certain way, the parser will attempt to read bytes from a chunk that has already been freed. <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:google:protobuf:*:*:*:*:*:*:*:* 4.22.0 (including) 4.25.0 (excluding)