Description
Nextcloud Server is an open source personal cloud server. Prior to versions 23.0.10 and 24.0.5, calendar name lengths are not validated before writing to a database. As a result, an attacker can send unnecessary amounts of data against the database. Version 23.0.10 and 24.0.5 contain patches for the issue. No known workarounds are available.
Published: 2022-12-01
Score: 3.5 Low
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-45072 Nextcloud Server is an open source personal cloud server. Prior to versions 23.0.10 and 24.0.5, calendar name lengths are not validated before writing to a database. As a result, an attacker can send unnecessary amounts of data against the database. Version 23.0.10 and 24.0.5 contain patches for the issue. No known workarounds are available.
History

No history.

Subscriptions

Nextcloud Nextcloud Server
cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2025-04-23T16:33:31.118Z

Reserved: 2022-09-30T16:38:28.956Z

Link: CVE-2022-41968

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-12-01T21:15:19.573

Modified: 2024-11-21T07:24:10.513

Link: CVE-2022-41968

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses