In Genivia gSOAP with a specific configuration an unauthenticated remote attacker can generate a high CPU load when forcing to parse an XML having duplicate ID attributes which can lead to a DoS.
Metrics
Affected Vendors & Products
References
History
Wed, 15 Jan 2025 08:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | In Genivia gSOAP with a specific configuration an unauthenticated remote attacker can generate a high CPU load when forcing to parse an XML having duplicate ID attributes which can lead to a DoS. | |
Title | gSOAP: Vulnerable to specially crafted unencrypted SDC messages | |
Weaknesses | CWE-834 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: CERTVDE
Published: 2025-01-15T08:00:24.578Z
Updated: 2025-01-15T08:00:24.578Z
Reserved: 2024-04-26T07:33:57.818Z
Link: CVE-2024-4227
Vulnrichment
No data.
NVD
Status : Received
Published: 2025-01-15T08:15:25.983
Modified: 2025-01-15T08:15:25.983
Link: CVE-2024-4227
Redhat
No data.