In Genivia gSOAP with a specific configuration an unauthenticated remote attacker can generate a high CPU load when forcing to parse an XML having duplicate ID attributes which can lead to a DoS.
Metrics
Affected Vendors & Products
References
History
Wed, 15 Jan 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 15 Jan 2025 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In Genivia gSOAP with a specific configuration an unauthenticated remote attacker can generate a high CPU load when forcing to parse an XML having duplicate ID attributes which can lead to a DoS. | |
| Title | gSOAP: Vulnerable to specially crafted unencrypted SDC messages | |
| Weaknesses | CWE-834 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: CERTVDE
Published: 2025-01-15T08:00:24.578Z
Updated: 2025-01-15T14:46:00.530Z
Reserved: 2024-04-26T07:33:57.818Z
Link: CVE-2024-4227
Updated: 2025-01-15T14:45:55.933Z
Status : Received
Published: 2025-01-15T08:15:25.983
Modified: 2025-01-15T08:15:25.983
Link: CVE-2024-4227
No data.