CVE-2023-48952

An issue in the box_deserialize_reusing function in openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) after running a SELECT statement.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:openlinksw:virtuoso:7.2.11:*:*:*:open_source:*:*:*

History

30 Nov 2023, 22:09

Type Values Removed Values Added
CPE cpe:2.3:a:openlinksw:virtuoso:7.2.11:*:*:*:open_source:*:*:*
References () https://github.com/openlink/virtuoso-opensource/issues/1175 - () https://github.com/openlink/virtuoso-opensource/issues/1175 - Exploit, Issue Tracking
CWE CWE-502
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5

29 Nov 2023, 20:53

Type Values Removed Values Added
New CVE

Information

Published : 2023-11-29 20:15

Updated : 2024-10-17 16:35


NVD link : CVE-2023-48952

Mitre link : CVE-2023-48952

CVE.ORG link : CVE-2023-48952


JSON object : View

Products Affected

openlinksw

  • virtuoso
CWE
CWE-502

Deserialization of Untrusted Data