Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-2798

Опубликовано: 25 мая 2023
Источник: debian
EPSS Низкий

Описание

Those using HtmlUnit to browse untrusted webpages may be vulnerable to Denial of service attacks (DoS). If HtmlUnit is running on user supplied web pages, an attacker may supply content that causes HtmlUnit to crash by a stack overflow. This effect may support a denial of service attack.This issue affects htmlunit before 2.70.0.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
jenkins-htmlunit-core-jsremovedpackage
htmlunitremovedpackage

Примечания

  • Fixed by: https://github.com/HtmlUnit/htmlunit/commit/940dc7fd8af9f46ca448c1e548b8f6d064a64290 (2.70.0)

  • https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=54613

EPSS

Процентиль: 22%
0.00073
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 2 лет назад

Those using HtmlUnit to browse untrusted webpages may be vulnerable to Denial of service attacks (DoS). If HtmlUnit is running on user supplied web pages, an attacker may supply content that causes HtmlUnit to crash by a stack overflow. This effect may support a denial of service attack.This issue affects htmlunit before 2.70.0.

CVSS3: 7.5
redhat
больше 2 лет назад

Those using HtmlUnit to browse untrusted webpages may be vulnerable to Denial of service attacks (DoS). If HtmlUnit is running on user supplied web pages, an attacker may supply content that causes HtmlUnit to crash by a stack overflow. This effect may support a denial of service attack.This issue affects htmlunit before 2.70.0.

CVSS3: 7.5
nvd
больше 2 лет назад

Those using HtmlUnit to browse untrusted webpages may be vulnerable to Denial of service attacks (DoS). If HtmlUnit is running on user supplied web pages, an attacker may supply content that causes HtmlUnit to crash by a stack overflow. This effect may support a denial of service attack.This issue affects htmlunit before 2.70.0.

CVSS3: 7.5
github
больше 2 лет назад

Unrestricted recursion in htmlunit

EPSS

Процентиль: 22%
0.00073
Низкий