Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-2205

Опубликовано: 22 июн. 2011
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5

Описание

Prosody before 0.8.1 does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document containing a large number of nested entity references, a similar issue to CVE-2003-1564.

РелизСтатусПримечание
devel

not-affected

hardy

DNE

lucid

ignored

end of life
maverick

ignored

end of life
natty

not-affected

oneiric

not-affected

precise

not-affected

quantal

not-affected

raring

not-affected

saucy

not-affected

Показывать по

Ссылки на источники

EPSS

Процентиль: 81%
0.01621
Низкий

5 Medium

CVSS2

Связанные уязвимости

nvd
больше 14 лет назад

Prosody before 0.8.1 does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document containing a large number of nested entity references, a similar issue to CVE-2003-1564.

debian
больше 14 лет назад

Prosody before 0.8.1 does not properly detect recursion during entity ...

github
больше 3 лет назад

Prosody before 0.8.1 does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document containing a large number of nested entity references, a similar issue to CVE-2003-1564.

EPSS

Процентиль: 81%
0.01621
Низкий

5 Medium

CVSS2