DataVault.Tesla/Impl/TypeSystem/AssociationHelper.cs in datavault allows context-dependent attackers to cause a denial of service (CPU consumption) via an input string composed of an [ (open bracket) followed by many commas, related to a certain regular expression, aka a "ReDoS" vulnerability.
References
Configurations
History
21 Nov 2024, 01:06
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.checkmarx.com/Upload/Documents/PDF/Checkmarx_OWASP_IL_2009_ReDoS.pdf - Exploit | |
References | () http://www.securityfocus.com/archive/1/506419/100/0/threaded - |
Information
Published : 2009-09-21 19:30
Updated : 2024-11-21 01:06
NVD link : CVE-2009-3277
Mitre link : CVE-2009-3277
CVE.ORG link : CVE-2009-3277
JSON object : View
Products Affected
xenu_by
- datavault
CWE