An improperly performed length calculation on a buffer in PlaintextRecordLayer could lead to an infinite loop and denial-of-service based on user input. This issue affected versions of fizz prior to v2019.03.04.00.
The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.
The product does not correctly calculate the size to be used when allocating a buffer, which could lead to a buffer overflow.