The package github.com/containrrr/shoutrrr/pkg/util before 0.6.0 are vulnerable to Denial of Service (DoS) via the util.PartitionMessage function. Exploiting this vulnerability is possible by sending exactly 2000, 4000, or 6000 characters messages.
Advisories
Source ID Title
EUVD EUVD EUVD-2022-6225 The package github.com/containrrr/shoutrrr/pkg/util before 0.6.0 are vulnerable to Denial of Service (DoS) via the util.PartitionMessage function. Exploiting this vulnerability is possible by sending exactly 2000, 4000, or 6000 characters messages.
Github GHSA Github GHSA GHSA-477v-w82m-634j Shoutrrr util package DoS via sending 2000, 4000, or 6000 character messages
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: snyk

Published:

Updated: 2024-09-17T02:37:27.360Z

Reserved: 2022-02-24T00:00:00

Link: CVE-2022-25891

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-07-15T20:15:08.540

Modified: 2024-11-21T06:53:10.343

Link: CVE-2022-25891

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses