Логотип exploitDog
bind:CVE-2023-2253
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-2253

Количество 10

Количество 10

ubuntu логотип

CVE-2023-2253

больше 2 лет назад

A flaw was found in the `/v2/_catalog` endpoint in distribution/distribution, which accepts a parameter to control the maximum number of records returned (query string: `n`). This vulnerability allows a malicious user to submit an unreasonably large value for `n,` causing the allocation of a massive string array, possibly causing a denial of service through excessive use of memory.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2023-2253

больше 2 лет назад

A flaw was found in the `/v2/_catalog` endpoint in distribution/distribution, which accepts a parameter to control the maximum number of records returned (query string: `n`). This vulnerability allows a malicious user to submit an unreasonably large value for `n,` causing the allocation of a massive string array, possibly causing a denial of service through excessive use of memory.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2023-2253

больше 2 лет назад

A flaw was found in the `/v2/_catalog` endpoint in distribution/distribution, which accepts a parameter to control the maximum number of records returned (query string: `n`). This vulnerability allows a malicious user to submit an unreasonably large value for `n,` causing the allocation of a massive string array, possibly causing a denial of service through excessive use of memory.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2023-2253

больше 2 лет назад

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2023-2253

больше 2 лет назад

A flaw was found in the `/v2/_catalog` endpoint in distribution/distri ...

CVSS3: 6.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2298-1

больше 2 лет назад

Security update for distribution

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2154-1

больше 2 лет назад

Security update for distribution

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2153-1

больше 2 лет назад

Security update for docker-distribution

EPSS: Низкий
github логотип

GHSA-hqxw-f8mx-cpmw

больше 2 лет назад

distribution catalog API endpoint can lead to OOM via malicious user input

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2023-07972

больше 2 лет назад

Уязвимость компонента /v2/_catalog корпоративной платформы Red Hat OpenShift Container Platform, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2023-2253

A flaw was found in the `/v2/_catalog` endpoint in distribution/distribution, which accepts a parameter to control the maximum number of records returned (query string: `n`). This vulnerability allows a malicious user to submit an unreasonably large value for `n,` causing the allocation of a massive string array, possibly causing a denial of service through excessive use of memory.

CVSS3: 6.5
0%
Низкий
больше 2 лет назад
redhat логотип
CVE-2023-2253

A flaw was found in the `/v2/_catalog` endpoint in distribution/distribution, which accepts a parameter to control the maximum number of records returned (query string: `n`). This vulnerability allows a malicious user to submit an unreasonably large value for `n,` causing the allocation of a massive string array, possibly causing a denial of service through excessive use of memory.

CVSS3: 6.5
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-2253

A flaw was found in the `/v2/_catalog` endpoint in distribution/distribution, which accepts a parameter to control the maximum number of records returned (query string: `n`). This vulnerability allows a malicious user to submit an unreasonably large value for `n,` causing the allocation of a massive string array, possibly causing a denial of service through excessive use of memory.

CVSS3: 6.5
0%
Низкий
больше 2 лет назад
msrc логотип
CVSS3: 6.5
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2023-2253

A flaw was found in the `/v2/_catalog` endpoint in distribution/distri ...

CVSS3: 6.5
0%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:2298-1

Security update for distribution

0%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:2154-1

Security update for distribution

0%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:2153-1

Security update for docker-distribution

0%
Низкий
больше 2 лет назад
github логотип
GHSA-hqxw-f8mx-cpmw

distribution catalog API endpoint can lead to OOM via malicious user input

CVSS3: 7.5
0%
Низкий
больше 2 лет назад
fstec логотип
BDU:2023-07972

Уязвимость компонента /v2/_catalog корпоративной платформы Red Hat OpenShift Container Platform, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу