Количество 5
Количество 5
CVE-2022-25304
All versions of package opcua; all versions of package asyncua are vulnerable to Denial of Service (DoS) due to a missing limitation on the number of received chunks - per single session or in total for all concurrent sessions. An attacker can exploit this vulnerability by sending an unlimited number of huge chunks (e.g. 2GB each) without sending the Final closing chunk.
CVE-2022-25304
All versions of package opcua; all versions of package asyncua are vulnerable to Denial of Service (DoS) due to a missing limitation on the number of received chunks - per single session or in total for all concurrent sessions. An attacker can exploit this vulnerability by sending an unlimited number of huge chunks (e.g. 2GB each) without sending the Final closing chunk.
CVE-2022-25304
All versions of package opcua; all versions of package asyncua are vul ...
GHSA-mfpj-3qhm-976m
Uncontrolled Resource Consumption in asyncua and opcua
BDU:2022-05313
Уязвимость библиотек opcua и asyncua, связана с неконтролируемым расходом ресурсов, позволяющая нарушителю вызвать отказ в обслуживании
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-25304 All versions of package opcua; all versions of package asyncua are vulnerable to Denial of Service (DoS) due to a missing limitation on the number of received chunks - per single session or in total for all concurrent sessions. An attacker can exploit this vulnerability by sending an unlimited number of huge chunks (e.g. 2GB each) without sending the Final closing chunk. | CVSS3: 7.5 | 1% Низкий | больше 3 лет назад | |
CVE-2022-25304 All versions of package opcua; all versions of package asyncua are vulnerable to Denial of Service (DoS) due to a missing limitation on the number of received chunks - per single session or in total for all concurrent sessions. An attacker can exploit this vulnerability by sending an unlimited number of huge chunks (e.g. 2GB each) without sending the Final closing chunk. | CVSS3: 7.5 | 1% Низкий | больше 3 лет назад | |
CVE-2022-25304 All versions of package opcua; all versions of package asyncua are vul ... | CVSS3: 7.5 | 1% Низкий | больше 3 лет назад | |
GHSA-mfpj-3qhm-976m Uncontrolled Resource Consumption in asyncua and opcua | CVSS3: 7.5 | 1% Низкий | больше 3 лет назад | |
BDU:2022-05313 Уязвимость библиотек opcua и asyncua, связана с неконтролируемым расходом ресурсов, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 1% Низкий | больше 3 лет назад |
Уязвимостей на страницу