Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7f88-5hhx-67m2

Опубликовано: 22 мар. 2024
Источник: github
Github: Прошло ревью
CVSS3: 7.5

Описание

XNIO denial of service vulnerability

A flaw was found in XNIO. The XNIO NotifierState that can cause a Stack Overflow Exception when the chain of notifier states becomes problematically large can lead to uncontrolled resource management and a possible denial of service (DoS). Version 3.8.14.Final is expected to contain a fix.

Пакеты

Наименование

org.jboss.xnio:xnio-api

maven
Затронутые версииВерсия исправления

<= 3.8.13.Final

3.8.14.Final

EPSS

Процентиль: 88%
0.03479
Низкий

7.5 High

CVSS3

Дефекты

CWE-400

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 2 лет назад

A flaw was found in XNIO. The XNIO NotifierState that can cause a Stack Overflow Exception when the chain of notifier states becomes problematically large can lead to uncontrolled resource management and a possible denial of service (DoS).

CVSS3: 7.5
redhat
больше 2 лет назад

A flaw was found in XNIO. The XNIO NotifierState that can cause a Stack Overflow Exception when the chain of notifier states becomes problematically large can lead to uncontrolled resource management and a possible denial of service (DoS).

CVSS3: 7.5
nvd
больше 2 лет назад

A flaw was found in XNIO. The XNIO NotifierState that can cause a Stack Overflow Exception when the chain of notifier states becomes problematically large can lead to uncontrolled resource management and a possible denial of service (DoS).

CVSS3: 7.5
debian
больше 2 лет назад

A flaw was found in XNIO. The XNIO NotifierState that can cause a Stac ...

CVSS3: 7.5
fstec
больше 3 лет назад

Уязвимость библиотеки для обеспечения неблокирующих операций ввода-вывода (I/O) XNIO, связанная с неконтролируемым потребление ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 88%
0.03479
Низкий

7.5 High

CVSS3

Дефекты

CWE-400