Asymmetric denial of service In org.json:json

Description

Duplicate Advisory: Denial of Service in JSON-Java

Duplicate Advisory

This advisory has been withdrawn because it is a duplicate of GHSA-4jq9-2xhw-jpx7. This link is maintained to preserve external references.

Original Description

Denial of Service in JSON-Java versions prior to 20230618.  A bug in the parser means that an input string of modest size can lead to indefinite amounts of memory being used. 

Mitigation

Update Impact

Minimal update. May introduce new vulnerabilities or breaking changes.

Ecosystem
Package
Affected version
Patched versions
FLAT-QMRTH – Vulnerability | Fluid Attacks Database