CVE-2023-5685

A flaw was found in XNIO. The XNIO NotifierState that can cause a Stack Overflow Exception when the chain of notifier states becomes problematically large can lead to uncontrolled resource management and a possible denial of service (DoS).
Configurations

No configuration.

History

21 Nov 2024, 08:42

Type Values Removed Values Added
References () https://access.redhat.com/errata/RHSA-2023:7637 - () https://access.redhat.com/errata/RHSA-2023:7637 -
References () https://access.redhat.com/errata/RHSA-2023:7638 - () https://access.redhat.com/errata/RHSA-2023:7638 -
References () https://access.redhat.com/errata/RHSA-2023:7639 - () https://access.redhat.com/errata/RHSA-2023:7639 -
References () https://access.redhat.com/errata/RHSA-2023:7641 - () https://access.redhat.com/errata/RHSA-2023:7641 -
References () https://access.redhat.com/errata/RHSA-2024:2707 - () https://access.redhat.com/errata/RHSA-2024:2707 -
References () https://access.redhat.com/security/cve/CVE-2023-5685 - () https://access.redhat.com/security/cve/CVE-2023-5685 -
References () https://bugzilla.redhat.com/show_bug.cgi?id=2241822 - () https://bugzilla.redhat.com/show_bug.cgi?id=2241822 -

08 May 2024, 09:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2024:2707 -

25 Apr 2024, 16:15

Type Values Removed Values Added
Summary
  • (es) Se encontró una falla en XNIO. El XNIO NotifierState que puede provocar una excepción de desbordamiento de pila cuando la cadena de estados de notificador se vuelve problemáticamente grande puede provocar una gestión descontrolada de recursos y una posible denegación de servicio (DoS).
References
  • () https://access.redhat.com/errata/RHSA-2023:7637 -
  • () https://access.redhat.com/errata/RHSA-2023:7638 -
  • () https://access.redhat.com/errata/RHSA-2023:7639 -
  • () https://access.redhat.com/errata/RHSA-2023:7641 -

22 Mar 2024, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-22 19:15

Updated : 2024-11-21 08:42


NVD link : CVE-2023-5685

Mitre link : CVE-2023-5685

CVE.ORG link : CVE-2023-5685


JSON object : View

Products Affected

No product.

CWE
CWE-400

Uncontrolled Resource Consumption