Description
Mattermost fails to limit the log size of server logs allowing an attacker sending specially crafted requests to different endpoints to potentially overflow the log.
No analysis available yet.
Remediation
Vendor Solution
Update Mattermost Server to versions 9.0.2, 9.1.1, 7.8.13, 8.1.4 or higher.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-2854 | Mattermost fails to limit the log size of server logs allowing an attacker sending specially crafted requests to different endpoints to potentially overflow the log. |
Github GHSA |
GHSA-3487-3j7c-7gwj | Mattermost Uncontrolled Resource Consumption vulnerability |
References
| Link | Providers |
|---|---|
| https://mattermost.com/security-updates |
|
History
No history.
Status: PUBLISHED
Assigner: Mattermost
Published:
Updated: 2024-08-02T21:30:33.816Z
Reserved: 2023-11-22T11:18:57.618Z
Link: CVE-2023-48369
No data.
Status : Modified
Published: 2023-11-27T10:15:08.400
Modified: 2024-11-21T08:31:35.023
Link: CVE-2023-48369
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA