Описание
An uncontrolled resource consumption flaw has been discovered in redhat-certification in the way documents are loaded. A remote attacker may provide an existing but invalid XML file which would be opened and never closed, possibly producing a Denial of Service.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Certification for Red Hat Enterprise Linux 6 | redhat-certification | Not affected | ||
| Red Hat Certification for Red Hat Enterprise Linux 7 | redhat-certification | Fixed | RHSA-2018:2373 | 09.08.2018 |
| Red Hat Certification for Red Hat Enterprise Linux 7 | redhat-certification-hardware | Fixed | RHSA-2018:2373 | 09.08.2018 |
| Red Hat Certification for Red Hat Enterprise Linux 7 | redhat-certification-hardware-preview | Fixed | RHSA-2018:2373 | 09.08.2018 |
Показывать по
Дополнительная информация
Статус:
EPSS
5.3 Medium
CVSS3
Связанные уязвимости
An uncontrolled resource consumption flaw has been discovered in redhat-certification in the way documents are loaded. A remote attacker may provide an existing but invalid XML file which would be opened and never closed, possibly producing a Denial of Service.
An uncontrolled resource consumption flaw has been discovered in redhat-certification in the way documents are loaded. A remote attacker may provide an existing but invalid XML file which would be opened and never closed, possibly producing a Denial of Service.
EPSS
5.3 Medium
CVSS3