Description
A vulnerability was found in Keycloak before 11.0.1 where DoS attack is possible by sending twenty requests simultaneously to the specified keycloak server, all with a Content-Length header value that exceeds the actual byte count of the request body.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-0825 | A vulnerability was found in Keycloak before 11.0.1 where DoS attack is possible by sending twenty requests simultaneously to the specified keycloak server, all with a Content-Length header value that exceeds the actual byte count of the request body. |
Github GHSA |
GHSA-52rg-hpwq-qp56 | Allocation of Resources Without Limits or Throttling in Keycloak |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-04T11:14:15.436Z
Reserved: 2020-03-20T00:00:00.000Z
Link: CVE-2020-10758
No data.
Status : Modified
Published: 2020-09-16T16:15:14.797
Modified: 2024-11-21T04:56:00.697
Link: CVE-2020-10758
OpenCVE Enrichment
No data.
EUVD
Github GHSA