CVE-2022-41404

An issue in the fetch() method in the BasicProfile class of org.ini4j through version v0.5.4 allows attackers to cause a Denial of Service (DoS) via unspecified vectors.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ini4j_project:ini4j:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*

History

09 Jun 2025, 16:15

Type Values Removed Values Added
Summary (en) An issue in the fetch() method in the BasicProfile class of org.ini4j before v0.5.4 allows attackers to cause a Denial of Service (DoS) via unspecified vectors. (en) An issue in the fetch() method in the BasicProfile class of org.ini4j through version v0.5.4 allows attackers to cause a Denial of Service (DoS) via unspecified vectors.
References
  • () https://github.com/Checkmarx/Vulnerabilities-Proofs-of-Concept/tree/main/2022/CVE-2022-41404 -

20 May 2025, 14:15

Type Values Removed Values Added
CWE CWE-400

21 Nov 2024, 07:23

Type Values Removed Values Added
References () https://lists.debian.org/debian-lts-announce/2022/11/msg00037.html - Mailing List, Third Party Advisory () https://lists.debian.org/debian-lts-announce/2022/11/msg00037.html - Mailing List, Third Party Advisory
References () https://sourceforge.net/p/ini4j/bugs/56/ - Exploit, Mailing List, Third Party Advisory () https://sourceforge.net/p/ini4j/bugs/56/ - Exploit, Mailing List, Third Party Advisory

Information

Published : 2022-10-11 23:15

Updated : 2025-06-09 16:15


NVD link : CVE-2022-41404

Mitre link : CVE-2022-41404

CVE.ORG link : CVE-2022-41404


JSON object : View

Products Affected

debian

  • debian_linux

ini4j_project

  • ini4j
CWE
NVD-CWE-noinfo CWE-400

Uncontrolled Resource Consumption