Описание
The package github.com/containrrr/shoutrrr/pkg/util before 0.6.0 are vulnerable to Denial of Service (DoS) via the util.PartitionMessage function. Exploiting this vulnerability is possible by sending exactly 2000, 4000, or 6000 characters messages.
Ссылки
- PatchThird Party Advisory
- ExploitIssue TrackingPatchThird Party Advisory
- PatchThird Party Advisory
- Release NotesThird Party Advisory
- PatchThird Party Advisory
- PatchThird Party Advisory
- ExploitIssue TrackingPatchThird Party Advisory
- PatchThird Party Advisory
- Release NotesThird Party Advisory
- PatchThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 0.6.0 (исключая)
cpe:2.3:a:containrrr:shoutrrr:*:*:*:*:*:*:*:*
EPSS
Процентиль: 68%
0.00581
Низкий
7.5 High
CVSS3
Дефекты
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 7.5
github
больше 3 лет назад
Shoutrrr util package DoS via sending 2000, 4000, or 6000 character messages
EPSS
Процентиль: 68%
0.00581
Низкий
7.5 High
CVSS3
Дефекты
NVD-CWE-noinfo