t-digest versions 3.1 through 3.3 fail to validate centroid means during deserialization in MergingDigest.fromBytes, allowing attackers to inject NaN values that bypass validation checks. Attackers can craft malicious serialized digests containing NaN centroids that degrade sorting performance from O(n log n) to O(n squared), causing severe processing delays during merge operations.
Metrics
Affected Vendors & Products
References
History
Thu, 10 Sep 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-502 | |
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Wed, 09 Sep 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | t-digest versions 3.1 through 3.3 fail to validate centroid means during deserialization in MergingDigest.fromBytes, allowing attackers to inject NaN values that bypass validation checks. Attackers can craft malicious serialized digests containing NaN centroids that degrade sorting performance from O(n log n) to O(n squared), causing severe processing delays during merge operations. | |
| Title | t-digest 3.1 through 3.3 Denial of Service via NaN Centroid Means in MergingDigest.fromBytes | |
| Weaknesses | CWE-407 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-09-09T14:32:42.726Z
Updated: 2026-09-10T14:57:02.770Z
Reserved: 2026-09-09T10:32:34.110Z
Link: CVE-2026-87822
No data.
Status : Awaiting Analysis
Published: 2026-09-09T15:17:27.427
Modified: 2026-09-09T20:16:54.383
Link: CVE-2026-87822