An attacker can craft an input to the Parse functions that would be processed non-linearly with respect to its length, resulting in extremely slow parsing. This could cause a denial of service.
No PoCs from references.
- https://github.com/11notes/docker-ente
- https://github.com/imjasonh/govulncheck-action
- https://github.com/k37y/gvs
- https://github.com/kaisensan/desafio-girus-pick
- https://github.com/seyrenus/trace-release
- https://github.com/unikorn-cloud/releases
- https://github.com/ytono/gcp-arcade