​
DirectorySecurity Advisories
Sign In
Security Advisories

CVE-2024-24988

Published

Last updated

https://nvd.nist.gov/vuln/detail/CVE-2024-24988

Severity

4.3

Medium

CVSS V3

Summary

Mattermost denial of service through long emoji value

Description

Mattermost fails to properly validate the length of the emoji value in the custom user status, allowing an attacker to send multiple times a very long string as an emoji value causing high resource consumption and possibly crashing the server.

References

  • https://github.com/advisories/GHSA-6mx3-9qfh-77gj

Affected packages


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images