Описание
An issue was discovered in Prosody before 0.12.6 and 1.0.0 through 13.0.0 before 13.0.5. A Denial of Service can occur via memory exhaustion caused by XML parsing resource amplification from unauthenticated connections.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| prosody | fixed | 13.0.5-1 | package |
Примечания
https://prosody.im/security/advisory_735dd9d3/
https://hg.prosody.im/trunk/rev/8a4417d32b0f
https://hg.prosody.im/trunk/rev/166ac7d65cb6
https://hg.prosody.im/trunk/rev/a4327478678f
https://hg.prosody.im/trunk/rev/6c7549964d4d
https://hg.prosody.im/trunk/rev/1e005ba71f0d
EPSS
Связанные уязвимости
An issue was discovered in Prosody before 0.12.6 and 1.0.0 through 13.0.0 before 13.0.5. A Denial of Service can occur via memory exhaustion caused by XML parsing resource amplification from unauthenticated connections.
An issue was discovered in Prosody before 0.12.6 and 1.0.0 through 13.0.0 before 13.0.5. A Denial of Service can occur via memory exhaustion caused by XML parsing resource amplification from unauthenticated connections.
An issue was discovered in Prosody before 0.12.6 and 1.0.0 through 13.0.0 before 13.0.5. A Denial of Service can occur via memory exhaustion caused by XML parsing resource amplification from unauthenticated connections.
EPSS