DirectorySecurity Advisories
Sign In
Security Advisories

CGA-28jv-hchm-75f5

Published

Last updated

https://images.chainguard.dev/security/CGA-28jv-hchm-75f5
Package

mattermost-9.11

Latest Update
Not affected
Aliases
  • CVE-2023-48268
  • GHSA-j4c3-3h73-74m9

Severity

4.3

Medium

CVSS V3

Summary

Mattermost Uncontrolled Resource Consumption vulnerability

Description

Mattermost fails to limit the amount of data extracted from compressed archives during board import in Mattermost Boards allowing an attacker to consume excessive resources, possibly leading to Denial of Service, by importing a board using a specially crafted zip (zip bomb).

References

  • https://nvd.nist.gov/vuln/detail/CVE-2023-48268

Updates


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images