CVE-2023-1973

A flaw was found in Undertow package. Using the FormAuthenticationMechanism, a malicious user could trigger a Denial of Service by sending crafted requests, leading the server to an OutofMemory error, exhausting the server's memory.
Configurations

No configuration.

History

08 Nov 2024, 19:01

Type Values Removed Values Added
Summary
  • (es) Se encontró una falla en el paquete Undertow. Mediante el uso de FormAuthenticationMechanism, un usuario malintencionado podría provocar una denegación de servicio mediante el envío de solicitudes manipuladas, lo que provocaría un error de falta de memoria en el servidor y agotaría su memoria.

07 Nov 2024, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-07 10:15

Updated : 2024-11-08 19:01


NVD link : CVE-2023-1973

Mitre link : CVE-2023-1973

CVE.ORG link : CVE-2023-1973


JSON object : View

Products Affected

No product.

CWE
CWE-20

Improper Input Validation