Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-41800

Опубликовано: 11 окт. 2021
Источник: debian
EPSS Низкий

Описание

MediaWiki before 1.36.2 allows a denial of service (resource consumption because of lengthy query processing time). Visiting Special:Contributions can sometimes result in a long running SQL query because PoolCounter protection is mishandled.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mediawikifixed1:1.35.4-1package
mediawikinot-affectedstretchpackage

Примечания

  • https://lists.wikimedia.org/hyperkitty/list/wikitech-l@lists.wikimedia.org/thread/2IFS5CM2YV4VMSODPX3J2LFHKSEWVFV5/

  • https://phabricator.wikimedia.org/T284419

  • Fixed by https://github.com/wikimedia/mediawiki/commit/781caf83dba90c18349f930bbaaa0e89f003f874

EPSS

Процентиль: 39%
0.00177
Низкий

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 4 лет назад

MediaWiki before 1.36.2 allows a denial of service (resource consumption because of lengthy query processing time). Visiting Special:Contributions can sometimes result in a long running SQL query because PoolCounter protection is mishandled.

CVSS3: 5.3
redhat
больше 4 лет назад

MediaWiki before 1.36.2 allows a denial of service (resource consumption because of lengthy query processing time). Visiting Special:Contributions can sometimes result in a long running SQL query because PoolCounter protection is mishandled.

CVSS3: 5.3
nvd
больше 4 лет назад

MediaWiki before 1.36.2 allows a denial of service (resource consumption because of lengthy query processing time). Visiting Special:Contributions can sometimes result in a long running SQL query because PoolCounter protection is mishandled.

CVSS3: 5.3
github
больше 3 лет назад

MediaWiki allows a denial of service

EPSS

Процентиль: 39%
0.00177
Низкий