Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-4213

Опубликовано: 24 авг. 2022
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

A flaw was found in JSS, where it did not properly free up all memory. Over time, the wasted memory builds up in the server memory, saturating the server’s RAM. This flaw allows an attacker to force the invocation of an out-of-memory process, causing a denial of service.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:dogtagpki:network_security_services_for_java:*:*:*:*:*:*:*:*
Версия до 4.9.3 (исключая)
cpe:2.3:a:dogtagpki:network_security_services_for_java:*:*:*:*:*:*:*:*
Версия от 5.0.0 (включая) до 5.1.0 (исключая)
Конфигурация 2
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
Конфигурация 3

Одно из

cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*

EPSS

Процентиль: 39%
0.00172
Низкий

7.5 High

CVSS3

Дефекты

CWE-401
CWE-401

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 3 года назад

A flaw was found in JSS, where it did not properly free up all memory. Over time, the wasted memory builds up in the server memory, saturating the server’s RAM. This flaw allows an attacker to force the invocation of an out-of-memory process, causing a denial of service.

CVSS3: 7.5
redhat
больше 3 лет назад

A flaw was found in JSS, where it did not properly free up all memory. Over time, the wasted memory builds up in the server memory, saturating the server’s RAM. This flaw allows an attacker to force the invocation of an out-of-memory process, causing a denial of service.

CVSS3: 7.5
debian
почти 3 года назад

A flaw was found in JSS, where it did not properly free up all memory. ...

rocky
около 3 лет назад

Moderate: pki-core:10.6 security and bug fix update

CVSS3: 7.5
github
почти 3 года назад

A flaw was found in JSS, where it did not properly free up all memory. Over time, the wasted memory builds up in the server memory, saturating the server’s RAM. This flaw allows an attacker to force the invocation of an out-of-memory process, causing a denial of service.

EPSS

Процентиль: 39%
0.00172
Низкий

7.5 High

CVSS3

Дефекты

CWE-401
CWE-401