First published: Thu Apr 28 2011(Updated: )
jabberd2 before 2.2.14 does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document containing a large number of nested entity references, a similar issue to CVE-2003-1564.
Credit: secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Jabber Jabberd2 | =2.1 | |
Jabber Jabberd2 | =2.1.8 | |
Jabber Jabberd2 | =2.2.2 | |
Jabber Jabberd2 | =2.1.18 | |
Jabber Jabberd2 | =2.2.7 | |
Jabber Jabberd2 | <=2.2.13 | |
Jabber Jabberd2 | =2.1.11 | |
Jabber Jabberd2 | =2.2.0 | |
Jabber Jabberd2 | =2.1.12 | |
Jabber Jabberd2 | =2.1.21 | |
Jabber Jabberd2 | =2.1.15 | |
Jabber Jabberd2 | =2.1.24 | |
Jabber Jabberd2 | =2.2.11 | |
Jabber Jabberd2 | =2.1.1 | |
Jabber Jabberd2 | =2.1.5 | |
Jabber Jabberd2 | =2.1.20 | |
Jabber Jabberd2 | =2.2.3 | |
Jabber Jabberd2 | =2.2.5 | |
Jabber Jabberd2 | =2.2.10 | |
Jabber Jabberd2 | =2.2.7.1 | |
Jabber Jabberd2 | =2.1.22 | |
Jabber Jabberd2 | =2.1.14 | |
Jabber Jabberd2 | =2.1.23 | |
Jabber Jabberd2 | =2.2.1 | |
Jabber Jabberd2 | =2.1.4 | |
Jabber Jabberd2 | =2.1.7 | |
Jabber Jabberd2 | =2.1.17 | |
Jabber Jabberd2 | =2.2.12 | |
Jabber Jabberd2 | =2.1.16 | |
Jabber Jabberd2 | =2.2.8 | |
Jabber Jabberd2 | =2.1.2 | |
Jabber Jabberd2 | =2.2.6 | |
Jabber Jabberd2 | =2.2.9 | |
Jabber Jabberd2 | =2.1.13 | |
Jabber Jabberd2 | =2.1.10 | |
Jabber Jabberd2 | =2.1.19 | |
Jabber Jabberd2 | =2.1.6 | |
Jabber Jabberd2 | =2.2.4 | |
Jabber Jabberd2 | =2.1.9 | |
Jabber Jabberd2 | =2.1.3 | |
redhat/jabberd | <2.2.14 | 2.2.14 |
Jabberd2 Jabberd2 | <2.2.14 | |
Fedoraproject Fedora | =13 | |
Fedoraproject Fedora | =14 | |
Fedoraproject Fedora | =15 | |
Apple Mac OS X | <10.6.8 | |
Apple Mac OS X | >=10.7.0<10.7.2 | |
Apple Mac OS X Server | <10.6.8 | |
Apple Mac OS X Server | >=10.7.0<10.7.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.