/
DirectorySecurity Advisories
Sign In
Security Advisories

CGA-5g95-w7p5-52fm

Published

Last updated

https://images.chainguard.dev/security/CGA-5g95-w7p5-52fm
Package

mattermost-fips-10.7

Repository

Chainguard

Latest Update
Fixed
Fixed Version

10.7.1-r1

Aliases
  • CVE-2023-48268
  • GHSA-j4c3-3h73-74m9

Severity

Unknown

Summary

Mattermost Uncontrolled Resource Consumption vulnerability

Description

Mattermost fails to limit the amount of data extracted from compressed archives during board import in Mattermost Boards allowing an attacker to consume excessive resources, possibly leading to Denial of Service, by importing a board using a specially crafted zip (zip bomb).

References

  • https://nvd.nist.gov/vuln/detail/CVE-2023-48268

Updates


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Products

Chainguard ContainersChainguard LibrariesChainguard VMs