Количество 6
Количество 6
CVE-2022-40152
Those using Woodstox to parse XML data may be vulnerable to Denial of Service attacks (DOS) if DTD support is enabled. If the parser is running on user supplied input, an attacker may supply content that causes the parser to crash by stackoverflow. This effect may support a denial of service attack.
CVE-2022-40152
Those using Woodstox to parse XML data may be vulnerable to Denial of Service attacks (DOS) if DTD support is enabled. If the parser is running on user supplied input, an attacker may supply content that causes the parser to crash by stackoverflow. This effect may support a denial of service attack.
CVE-2022-40152
Those using Woodstox to parse XML data may be vulnerable to Denial of Service attacks (DOS) if DTD support is enabled. If the parser is running on user supplied input, an attacker may supply content that causes the parser to crash by stackoverflow. This effect may support a denial of service attack.
CVE-2022-40152
Those using Woodstox to parse XML data may be vulnerable to Denial of ...
GHSA-3f7h-mf4q-vrm4
Denial of Service due to parser crash
BDU:2023-08465
Уязвимость библиотеки woodstox, связанная с переполнением буфера в стеке, позволяющая нарушителю вызвать отказ в обслуживании
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-40152 Those using Woodstox to parse XML data may be vulnerable to Denial of Service attacks (DOS) if DTD support is enabled. If the parser is running on user supplied input, an attacker may supply content that causes the parser to crash by stackoverflow. This effect may support a denial of service attack. | CVSS3: 6.5 | 20% Средний | почти 4 года назад | |
CVE-2022-40152 Those using Woodstox to parse XML data may be vulnerable to Denial of Service attacks (DOS) if DTD support is enabled. If the parser is running on user supplied input, an attacker may supply content that causes the parser to crash by stackoverflow. This effect may support a denial of service attack. | CVSS3: 7.5 | 20% Средний | почти 4 года назад | |
CVE-2022-40152 Those using Woodstox to parse XML data may be vulnerable to Denial of Service attacks (DOS) if DTD support is enabled. If the parser is running on user supplied input, an attacker may supply content that causes the parser to crash by stackoverflow. This effect may support a denial of service attack. | CVSS3: 6.5 | 20% Средний | почти 4 года назад | |
CVE-2022-40152 Those using Woodstox to parse XML data may be vulnerable to Denial of ... | CVSS3: 6.5 | 20% Средний | почти 4 года назад | |
GHSA-3f7h-mf4q-vrm4 Denial of Service due to parser crash | CVSS3: 6.5 | 20% Средний | почти 4 года назад | |
BDU:2023-08465 Уязвимость библиотеки woodstox, связанная с переполнением буфера в стеке, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 6.5 | 20% Средний | почти 4 года назад |
Уязвимостей на страницу