{"id":"CVE-2024-22871","details":"An issue in Clojure versions 1.20 to 1.12.0-alpha5 allows an attacker to cause a denial of service (DoS) via the clojure.core$partial$fn__5920 function.","aliases":["GHSA-vr64-r9qj-h27f"],"modified":"2026-04-16T04:35:37.030894566Z","published":"2024-02-29T02:15:09.410Z","related":["CGA-wfh3-2j8f-9qc8","openSUSE-SU-2024:13763-1"],"references":[{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/25FKUOYXQZGGJMFUM5HJABWMIX2TILRV/"},{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/SWWK2SO2MH4SXPO6L444MM6LHVLVFULV/"},{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YFPGUDXMW6OXKIDGCOZFEAXO74VQIB2T/"},{"type":"ADVISORY","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YFPGUDXMW6OXKIDGCOZFEAXO74VQIB2T/"},{"type":"ADVISORY","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/25FKUOYXQZGGJMFUM5HJABWMIX2TILRV/"},{"type":"ADVISORY","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SWWK2SO2MH4SXPO6L444MM6LHVLVFULV/"},{"type":"EVIDENCE","url":"https://hackmd.io/%40fe1w0/rymmJGida"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/clojure/clojure","events":[{"introduced":"0436abdb51ae6d53517b74bf84a33162397744b0"},{"fixed":"218054f1f2ddfc69ef4f9d17f916de35e4a4effe"},{"introduced":"0"},{"last_affected":"52bb71bb615e2ad2cd75b3d47fce541d5b37c1ec"},{"introduced":"0"},{"last_affected":"bde257d1f44d65d623c687481d86a102f9142006"},{"introduced":"0"},{"last_affected":"4090f405466ea90bbaf3addbe41f0a6acb164dbb"},{"introduced":"0"},{"last_affected":"5bc453ec87116e2732a3dd31f05ba519563a2bfc"},{"introduced":"0"},{"last_affected":"5dbf142e0d734e617154f143cd02e3078955ea86"},{"introduced":"0"},{"last_affected":"28c69862bdb9528468f5cbdb684a721cf5b92ad1"},{"introduced":"0"},{"last_affected":"e3520c07e8b21dbf5a91fa14b7114b90dc1e89c6"},{"introduced":"0"},{"last_affected":"6355ed6fa62a38604291fe1f83c27eaa7ee6e45b"}],"database_specific":{"versions":[{"introduced":"1.2.0"},{"fixed":"1.11.2"},{"introduced":"0"},{"last_affected":"1.12.0-alpha1"},{"introduced":"0"},{"last_affected":"1.12.0-alpha2"},{"introduced":"0"},{"last_affected":"1.12.0-alpha3"},{"introduced":"0"},{"last_affected":"1.12.0-alpha4"},{"introduced":"0"},{"last_affected":"1.12.0-alpha5"},{"introduced":"0"},{"last_affected":"1.12.0-alpha6"},{"introduced":"0"},{"last_affected":"1.12.0-alpha7"},{"introduced":"0"},{"last_affected":"1.12.0-alpha8"}]}}],"versions":["clojure-1.10.0","clojure-1.10.0-RC1","clojure-1.10.0-RC2","clojure-1.10.0-RC3","clojure-1.10.0-RC4","clojure-1.10.0-RC5","clojure-1.10.0-alpha2","clojure-1.10.0-alpha3","clojure-1.10.0-alpha4","clojure-1.10.0-alpha5","clojure-1.10.0-alpha6","clojure-1.10.0-alpha7","clojure-1.10.0-alpha8","clojure-1.10.0-alpha9","clojure-1.10.0-beta1","clojure-1.10.0-beta2","clojure-1.10.0-beta3","clojure-1.10.0-beta4","clojure-1.10.0-beta5","clojure-1.10.0-beta6","clojure-1.10.0-beta7","clojure-1.10.0-beta8","clojure-1.10.1","clojure-1.10.1-RC1","clojure-1.10.1-beta1","clojure-1.10.1-beta2","clojure-1.10.1-beta3","clojure-1.10.2","clojure-1.10.2-alpha1","clojure-1.10.2-alpha2","clojure-1.10.2-alpha3","clojure-1.10.2-alpha4","clojure-1.10.2-rc1","clojure-1.10.2-rc2","clojure-1.10.2-rc3","clojure-1.10.3","clojure-1.10.3-rc1","clojure-1.11.0","clojure-1.11.0-alpha1","clojure-1.11.0-alpha2","clojure-1.11.0-alpha3","clojure-1.11.0-alpha4","clojure-1.11.0-beta1","clojure-1.11.0-rc1","clojure-1.11.1","clojure-1.11.1-rc1","clojure-1.12.0-alpha1","clojure-1.12.0-alpha2","clojure-1.12.0-alpha3","clojure-1.12.0-alpha4","clojure-1.12.0-alpha5","clojure-1.12.0-alpha6","clojure-1.12.0-alpha7","clojure-1.12.0-alpha8","clojure-1.3.0","clojure-1.3.0-RC0","clojure-1.3.0-alpha5","clojure-1.3.0-alpha6","clojure-1.3.0-alpha7","clojure-1.3.0-alpha8","clojure-1.3.0-beta1","clojure-1.3.0-beta2","clojure-1.3.0-beta3","clojure-1.4.0","clojure-1.4.0-alpha1","clojure-1.4.0-alpha2","clojure-1.4.0-alpha3","clojure-1.4.0-alpha4","clojure-1.4.0-alpha5","clojure-1.4.0-beta1","clojure-1.4.0-beta2","clojure-1.4.0-beta3","clojure-1.4.0-beta4","clojure-1.4.0-beta5","clojure-1.4.0-beta6","clojure-1.4.0-beta7","clojure-1.5.0","clojure-1.5.0-RC1","clojure-1.5.0-RC14","clojure-1.5.0-RC15","clojure-1.5.0-RC16","clojure-1.5.0-RC17","clojure-1.5.0-RC2","clojure-1.5.0-RC3","clojure-1.5.0-RC4","clojure-1.5.0-alpha1","clojure-1.5.0-alpha2","clojure-1.5.0-alpha3","clojure-1.5.0-alpha4","clojure-1.5.0-alpha5","clojure-1.5.0-alpha6","clojure-1.5.0-alpha7","clojure-1.5.0-beta1","clojure-1.5.0-beta10","clojure-1.5.0-beta11","clojure-1.5.0-beta12","clojure-1.5.0-beta13","clojure-1.5.0-beta2","clojure-1.5.0-beta7","clojure-1.5.0-beta8","clojure-1.5.1","clojure-1.6.0","clojure-1.6.0-RC1","clojure-1.6.0-RC2","clojure-1.6.0-RC3","clojure-1.6.0-RC4","clojure-1.6.0-alpha1","clojure-1.6.0-alpha2","clojure-1.6.0-alpha3","clojure-1.6.0-beta1","clojure-1.6.0-beta2","clojure-1.7.0","clojure-1.7.0-RC1","clojure-1.7.0-RC2","clojure-1.7.0-alpha3","clojure-1.7.0-alpha4","clojure-1.7.0-alpha5","clojure-1.7.0-alpha6","clojure-1.7.0-beta1","clojure-1.7.0-beta2","clojure-1.7.0-beta3","clojure-1.8.0","clojure-1.8.0-RC1","clojure-1.8.0-RC2","clojure-1.8.0-RC3","clojure-1.8.0-RC4","clojure-1.8.0-RC5","clojure-1.8.0-alpha1","clojure-1.8.0-alpha2","clojure-1.8.0-alpha4","clojure-1.8.0-alpha5","clojure-1.8.0-beta1","clojure-1.8.0-beta2","clojure-1.9.0","clojure-1.9.0-RC1","clojure-1.9.0-RC2","clojure-1.9.0-alpha1","clojure-1.9.0-alpha10","clojure-1.9.0-alpha11","clojure-1.9.0-alpha12","clojure-1.9.0-alpha13","clojure-1.9.0-alpha14","clojure-1.9.0-alpha15","clojure-1.9.0-alpha16","clojure-1.9.0-alpha17","clojure-1.9.0-alpha19","clojure-1.9.0-alpha20","clojure-1.9.0-alpha3","clojure-1.9.0-alpha4","clojure-1.9.0-alpha5","clojure-1.9.0-alpha6","clojure-1.9.0-alpha8","clojure-1.9.0-alpha9","clojure-1.9.0-beta1","clojure-1.9.0-beta2","clojure-1.9.0-beta3","clojure-1.9.0-beta4"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-22871.json","unresolved_ranges":[{"events":[{"introduced":"0"},{"last_affected":"38"}]},{"events":[{"introduced":"0"},{"last_affected":"39"}]},{"events":[{"introduced":"0"},{"last_affected":"40"}]}]}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}