Nextcloud Server is an open source personal cloud server. Prior to versions 23.0.10 and 24.0.5, calendar name lengths are not validated before writing to a database. As a result, an attacker can send unnecessary amounts of data against the database. Version 23.0.10 and 24.0.5 contain patches for the issue. No known workarounds are available.
Advisories
Source ID Title
EUVD EUVD EUVD-2022-45072 Nextcloud Server is an open source personal cloud server. Prior to versions 23.0.10 and 24.0.5, calendar name lengths are not validated before writing to a database. As a result, an attacker can send unnecessary amounts of data against the database. Version 23.0.10 and 24.0.5 contain patches for the issue. No known workarounds are available.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2025-04-23T16:33:31.118Z

Reserved: 2022-09-30T16:38:28.956Z

Link: CVE-2022-41968

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-12-01T21:15:19.573

Modified: 2024-11-21T07:24:10.513

Link: CVE-2022-41968

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.