First published: Wed Nov 20 2019(Updated: )
MediaWiki before 1.19.4 and 1.20.x before 1.20.3 allows remote attackers to cause a denial of service (application crash) by sending a specially crafted request.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/mediawiki | 1:1.35.13-1+deb11u2 1:1.39.7-1~deb12u1 1:1.39.8-1 | |
Wikimedia MediaWiki | <1.19.4 | |
Wikimedia MediaWiki | >=1.20.0<1.20.3 | |
Debian | =9.0 | |
Debian | =10.0 | |
Red Hat Enterprise Linux | =6.0 | |
Fedora | =18 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-1816 has been classified with a severity level that indicates it can lead to a denial of service due to application crashes.
To fix CVE-2013-1816, upgrade MediaWiki to version 1.19.4 or later, or version 1.20.3 or later.
Versions of MediaWiki before 1.19.4 and 1.20.x before 1.20.3 are affected by CVE-2013-1816.
Yes, attackers can exploit CVE-2013-1816 remotely by sending specially crafted requests.
CVE-2013-1816 can cause a denial of service, resulting in application crashes and potential downtime.