Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-5685

Опубликовано: 22 мар. 2024
Источник: debian

Описание

A flaw was found in XNIO. The XNIO NotifierState that can cause a Stack Overflow Exception when the chain of notifier states becomes problematically large can lead to uncontrolled resource management and a possible denial of service (DoS).

Пакеты

ПакетСтатусВерсия исправленияРелизТип
jboss-xniounfixedpackage
jboss-xnioignoredtrixiepackage
jboss-xnioignoredbookwormpackage
jboss-xniono-dsabullseyepackage
jboss-xniono-dsabusterpackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=2241822

  • https://issues.redhat.com/browse/XNIO-423

  • https://github.com/xnio/xnio/commit/ffabdcdda508ef87aeadad5ca3f854e274d60ec1 (3.8.14.Final)

  • https://github.com/xnio/xnio/pull/324

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 2 года назад

A flaw was found in XNIO. The XNIO NotifierState that can cause a Stack Overflow Exception when the chain of notifier states becomes problematically large can lead to uncontrolled resource management and a possible denial of service (DoS).

CVSS3: 7.5
redhat
почти 2 года назад

A flaw was found in XNIO. The XNIO NotifierState that can cause a Stack Overflow Exception when the chain of notifier states becomes problematically large can lead to uncontrolled resource management and a possible denial of service (DoS).

CVSS3: 7.5
nvd
почти 2 года назад

A flaw was found in XNIO. The XNIO NotifierState that can cause a Stack Overflow Exception when the chain of notifier states becomes problematically large can lead to uncontrolled resource management and a possible denial of service (DoS).

CVSS3: 7.5
github
почти 2 года назад

XNIO denial of service vulnerability

CVSS3: 7.5
fstec
почти 3 года назад

Уязвимость библиотеки для обеспечения неблокирующих операций ввода-вывода (I/O) XNIO, связанная с неконтролируемым потребление ресурсов, позволяющая нарушителю вызвать отказ в обслуживании