CVE-2009-3277

DataVault.Tesla/Impl/TypeSystem/AssociationHelper.cs in datavault allows context-dependent attackers to cause a denial of service (CPU consumption) via an input string composed of an [ (open bracket) followed by many commas, related to a certain regular expression, aka a "ReDoS" vulnerability.
Configurations

Configuration 1 (hide)

cpe:2.3:a:xenu_by:datavault:*:*:*:*:*:*:*:*

History

21 Nov 2024, 01:06

Type Values Removed Values Added
References () http://www.checkmarx.com/Upload/Documents/PDF/Checkmarx_OWASP_IL_2009_ReDoS.pdf - Exploit () http://www.checkmarx.com/Upload/Documents/PDF/Checkmarx_OWASP_IL_2009_ReDoS.pdf - Exploit
References () http://www.securityfocus.com/archive/1/506419/100/0/threaded - () http://www.securityfocus.com/archive/1/506419/100/0/threaded -

Information

Published : 2009-09-21 19:30

Updated : 2024-11-21 01:06


NVD link : CVE-2009-3277

Mitre link : CVE-2009-3277

CVE.ORG link : CVE-2009-3277


JSON object : View

Products Affected

xenu_by

  • datavault