CVE-2011-2531: Medium severity prosody vulnerability
Published Jun 22, 2011
·Updated
Prosody 0.8.x before 0.8.1, when MySQL is used, assigns an incorrect data type to the value column in certain tables, which might allow remote attackers to cause a denial of service (data truncation) by sending a large amount of data.
Affected Software
1 affected component
Prosody prosody=0.8.0
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Jun 22, 2011
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-2531?
CVE-2011-2531 has a medium severity level due to the potential disruption it can cause via denial of service.
2
How do I fix CVE-2011-2531?
To fix CVE-2011-2531, upgrade to Prosody version 0.8.1 or later.
3
What type of vulnerability is CVE-2011-2531?
CVE-2011-2531 is a denial of service vulnerability that affects Prosody when using MySQL.
4
Which versions of Prosody are affected by CVE-2011-2531?
CVE-2011-2531 affects Prosody versions 0.8.0 and below, specifically when MySQL is used.
5
What can attackers do with CVE-2011-2531?
Attackers can exploit CVE-2011-2531 to cause data truncation incidents, leading to denial of service.