Description
Mattermost fails to properly truncate the postgres error log message of a search query failure allowing an attacker to cause the creation of large log files which can result in Denial of Service
No analysis available yet.
Remediation
Vendor Solution
Update Mattermost Server to versions v7.1.10, v7.8.5, v7.9.4, v.7.10.1 or higher.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-34241 | Mattermost fails to properly truncate the postgres error log message of a search query failure allowing an attacker to cause the creation of large log files which can result in Denial of Service |
References
| Link | Providers |
|---|---|
| https://mattermost.com/security-updates |
|
History
Fri, 06 Dec 2024 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Mattermost
Published:
Updated: 2024-12-06T22:59:34.763Z
Reserved: 2023-05-18T10:35:58.147Z
Link: CVE-2023-2785
Updated: 2024-08-02T06:33:05.558Z
Status : Modified
Published: 2023-06-16T10:15:09.133
Modified: 2024-11-21T07:59:17.157
Link: CVE-2023-2785
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD