The vendor explicitly identifies these products as affected by this CVE.
- rh-podman-desktop.git as a component of Red Hat Build of Podman Desktop
- Summary
- A flaw was found in stream-json. This vulnerability allows a remote attacker to cause a Denial of Service (DoS) by providing a specially crafted, deeply nested JSON document. The library's path filters, such as pick and ignore, inefficiently process these structures, leading to excessive resource consumption and blocking the Node.js event loop.
- Remediation
- Fix deferred
