Tink C Google Tink C

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Google Tink C.

By the Year

In 2026 there have been 0 vulnerabilities in Google Tink C. Tink C did not have any published security vulnerabilities last year.

Year Vulnerabilities Average Score
2026 0 0.00
2025 0 0.00
2024 1 7.50

It may take a day or so for new Tink C vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Google Tink C Security Vulnerabilities

Denial of Service in Tink-cc pre-2.1.3 via JsonKeysetReader
CVE-2024-4420 7.5 - High - May 21, 2024

There exists a Denial of service vulnerability in Tink-cc in versions prior to 2.1.3.  * An adversary can crash binaries using the crypto::tink::JsonKeysetReader in tink-cc by providing an input that is not an encoded JSON object, but still a valid encoded JSON element, for example a number or an array. This will crash as Tink just assumes any valid JSON input will contain an object. * An adversary can crash binaries using the crypto::tink::JsonKeysetReader in tink-cc by providing an input containing many nested JSON objects. This may result in a stack overflow. We recommend upgrading to version 2.1.3 or above

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Google Tink C or by Google? Click the Watch button to subscribe.

Google
Vendor

Google Tink C
Product

subscribe