Impact
The flaw lies in the json.loads routine of CowAgent’s Streaming Tool‑Call Argument Handler, allowing an attacker to craft input that triggers uncontrolled allocation of memory and other resources. This can lead to performance degradation, service interruption, or complete denial of service. The weakness is classified as a resource allocation defect (CWE‑400) and a blind resource allocation problem (CWE‑770). The CVSS score of 5.3 indicates a medium severity impact.
Affected Systems
Affected products are zhayujie CowAgent versions up to and including 2.2.0. All variants that employ the Streaming Tool‑Call Argument Handler for parsing JSON input are vulnerable; no finer version granularity is listed.
Risk and Exploitability
The vulnerability can be triggered remotely; publicly available exploits exist and might be used. The vendor has not provided a fix, and the issue is not listed in CISA KEV. While the EPSS score is not available, the documented public exploit indicates a realistic risk that could be mitigated by limiting request volume or size. The medium CVSS score suggests that exploitation would mainly disrupt availability rather than compromise confidentiality or integrity.
OpenCVE Enrichment