Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7pgj-rq2h-p9cq

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

net/IOService.java in Tigase before 5.2.1 does not properly restrict the processing of compressed XML elements, which allows remote attackers to cause a denial of service (resource consumption) via a crafted XMPP stream, aka an "xmppbomb" attack.

net/IOService.java in Tigase before 5.2.1 does not properly restrict the processing of compressed XML elements, which allows remote attackers to cause a denial of service (resource consumption) via a crafted XMPP stream, aka an "xmppbomb" attack.

EPSS

Процентиль: 86%
0.02877
Низкий

Связанные уязвимости

nvd
почти 12 лет назад

net/IOService.java in Tigase before 5.2.1 does not properly restrict the processing of compressed XML elements, which allows remote attackers to cause a denial of service (resource consumption) via a crafted XMPP stream, aka an "xmppbomb" attack.

EPSS

Процентиль: 86%
0.02877
Низкий