PT-2026-67723 · Unknown · Perspective
CVE-2026-67198
·
Published
2026-08-04
·
Updated
2026-08-04
CVSS v4.0
8.7
High
| Vector | AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
Perspective version 5.0.0
Description
A denial-of-service issue exists in the VirtualServer protocol dispatcher. Unauthenticated remote attackers can crash the server process by sending malformed or incomplete protobuf messages (a language-neutral, platform-neutral, extensible mechanism for serializing structured data). Specifically, sending requests such as ViewToArrowReq without a viewport or MakeTableReq without a data field triggers
unwrap() calls on None values at nine different locations, resulting in a process abort via SIGABRT.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Perspective