CAPEC 231 Oversized Serialized Data Payloads

Draft Standard Medium Risk
Severity High

Description

An adversary injects oversized serialized data payloads into a parser during data processing to produce adverse effects upon the parser such as exhausting system resources and arbitrary code execution.

Attack Execution Flow

2

Mitigations

4

Consequences

Indicators

1

Relationships