Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-46136

Опубликовано: 25 окт. 2023
Источник: redhat
CVSS3: 7.5

Описание

Werkzeug is a comprehensive WSGI web application library. If an upload of a file that starts with CR or LF and then is followed by megabytes of data without these characters: all of these bytes are appended chunk by chunk into internal bytearray and lookup for boundary is performed on growing buffer. This allows an attacker to cause a denial of service by sending crafted multipart data to an endpoint that will parse it. The amount of CPU time required can block worker processes from handling legitimate requests. This vulnerability has been patched in version 3.0.1.

A resource consumption flaw was found in python-werkzeug. If a specially crafted file is uploaded by a remote attacker, it may cause a denial of service.

Отчет

The vulnerability found in python-werkzeug, which lets attackers carry out denial of service attacks by using carefully crafted multipart data, is considered a moderate issue because it could affect system resources and availability. When this vulnerability is exploited, it can cause the CPU to work excessively hard because the parsing mechanism keeps adding data chunks to an internal buffer without checking boundaries properly. This can result in legitimate requests being delayed or denied as worker processes get overloaded, affecting how well the web application performs and responds. While this problem doesn’t directly compromise data integrity or confidentiality, exploiting it can disrupt the availability of the service, which is why it’s seen as a moderate issue.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Ceph Storage 5python-werkzeugAffected
Red Hat Ceph Storage 6python-werkzeugAffected
Red Hat Enterprise Linux 7python-werkzeugOut of support scope
Red Hat Enterprise Linux 8python-werkzeugNot affected
Red Hat OpenStack Platform 16.1python-werkzeugWill not fix
Red Hat OpenStack Platform 16.2openstack-designateWill not fix
Red Hat OpenStack Platform 16.2python-werkzeugWill not fix
Red Hat OpenStack Platform 18.0python-httpcoreAffected
Red Hat OpenStack Platform 18.0python-werkzeugAffected
Red Hat Quay 3quay/quay-rhel8Affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-407
https://bugzilla.redhat.com/show_bug.cgi?id=2246310python-werkzeug: high resource consumption leading to denial of service

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 8
ubuntu
больше 1 года назад

Werkzeug is a comprehensive WSGI web application library. If an upload of a file that starts with CR or LF and then is followed by megabytes of data without these characters: all of these bytes are appended chunk by chunk into internal bytearray and lookup for boundary is performed on growing buffer. This allows an attacker to cause a denial of service by sending crafted multipart data to an endpoint that will parse it. The amount of CPU time required can block worker processes from handling legitimate requests. This vulnerability has been patched in version 3.0.1.

CVSS3: 8
nvd
больше 1 года назад

Werkzeug is a comprehensive WSGI web application library. If an upload of a file that starts with CR or LF and then is followed by megabytes of data without these characters: all of these bytes are appended chunk by chunk into internal bytearray and lookup for boundary is performed on growing buffer. This allows an attacker to cause a denial of service by sending crafted multipart data to an endpoint that will parse it. The amount of CPU time required can block worker processes from handling legitimate requests. This vulnerability has been patched in version 3.0.1.

CVSS3: 7.5
msrc
больше 1 года назад

Описание отсутствует

CVSS3: 8
debian
больше 1 года назад

Werkzeug is a comprehensive WSGI web application library. If an upload ...

suse-cvrf
больше 1 года назад

Security update for python-Werkzeug

7.5 High

CVSS3