Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-3243

Опубликовано: 12 мая 2014
Источник: debian

Описание

SOAPpy 0.12.5 does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted SOAP request containing a large number of nested entity references.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
python-soappyfixed0.12.22-1package
python-soappyno-dsasqueezepackage
python-soappyno-dsawheezypackage

Примечания

  • http://www.pnigos.com/?p=260

Связанные уязвимости

ubuntu
больше 11 лет назад

SOAPpy 0.12.5 does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted SOAP request containing a large number of nested entity references.

redhat
почти 12 лет назад

SOAPpy 0.12.5 does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted SOAP request containing a large number of nested entity references.

nvd
больше 11 лет назад

SOAPpy 0.12.5 does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted SOAP request containing a large number of nested entity references.

github
больше 3 лет назад

SOAPpy vulnerable to XXE attacks