Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-4540

Опубликовано: 05 сент. 2023
Источник: debian
EPSS Низкий

Описание

Improper Handling of Exceptional Conditions vulnerability in Daurnimator lua-http library allows Excessive Allocation and a denial of service (DoS) attack to be executed by sending a properly crafted request to the server. Such a request causes the program to enter an infinite loop. This issue affects lua-http: all versions before commit ddab283.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
lua-httpfixed0.4-2package
lua-httpno-dsabookwormpackage
lua-httpno-dsabullseyepackage
lua-httpno-dsabusterpackage

Примечания

  • Fixed by: https://github.com/daurnimator/lua-http/commit/ddab2835c583d45dec62680ca8d3cbde55e0bae6

EPSS

Процентиль: 23%
0.00074
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 2 лет назад

Improper Handling of Exceptional Conditions vulnerability in Daurnimator lua-http library allows Excessive Allocation and a denial of service (DoS) attack to be executed by sending a properly crafted request to the server. Such a request causes the program to enter an infinite loop. This issue affects lua-http: all versions before commit ddab283.

CVSS3: 7.5
nvd
больше 2 лет назад

Improper Handling of Exceptional Conditions vulnerability in Daurnimator lua-http library allows Excessive Allocation and a denial of service (DoS) attack to be executed by sending a properly crafted request to the server. Such a request causes the program to enter an infinite loop. This issue affects lua-http: all versions before commit ddab283.

CVSS3: 7.5
github
больше 2 лет назад

Improper Handling of Exceptional Conditions vulnerability in Daurnimator HTTP Library for Lua allows Excessive Allocation.This issue affects HTTP Library for Lua: before commit ddab283.

EPSS

Процентиль: 23%
0.00074
Низкий