/
DirectorySecurity Advisories
Sign In
Security Advisories

CVE-2023-48268

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2023-48268

CGA ID

CGA-8rhx-797w-c47m

Severity

7.5

High

CVSS V3

Description

Mattermost fails to limit the amount of data extracted from compressed archives during board import in Mattermost Boards allowing an attacker to consume excessive resources, possibly leading to Denial of Service, by importing a board using a specially crafted zip (zip bomb).

References

  • https://images.chainguard.dev/security/CGA-8rhx-797w-c47m

Affected packages


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images