Description
Mattermost fails to enforce a limit for the size of the cache entry for OpenGraph data allowing an attacker to send a specially crafted request to the /api/v4/opengraph filling the cache and turning the server unavailable.
No analysis available yet.
Remediation
Vendor Solution
Update Mattermost Server to versions 7.8.11, 8.0.3, 8.1.2 or higher.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-57647 | Mattermost fails to enforce a limit for the size of the cache entry for OpenGraph data allowing an attacker to send a specially crafted request to the /api/v4/opengraph filling the cache and turning the server unavailable. |
References
| Link | Providers |
|---|---|
| https://mattermost.com/security-updates |
|
History
No history.
Status: PUBLISHED
Assigner: Mattermost
Published:
Updated: 2024-09-05T19:47:56.144Z
Reserved: 2023-10-02T10:48:43.542Z
Link: CVE-2023-5330
Updated: 2024-08-02T07:52:08.656Z
Status : Modified
Published: 2023-10-09T11:15:11.197
Modified: 2024-11-21T08:41:32.737
Link: CVE-2023-5330
No data.
OpenCVE Enrichment
No data.
EUVD