First published: Fri Mar 03 2017(Updated: )
ownCloud Server before 8.1.11, 8.2.x before 8.2.9, 9.0.x before 9.0.7, and 9.1.x before 9.1.3 allows remote authenticated users to cause a denial of service (server hang and logfile flooding) via a one bit BMP file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ownCloud | <=8.1.10 | |
ownCloud | =8.2.0 | |
ownCloud | =8.2.1 | |
ownCloud | =8.2.2 | |
ownCloud | =8.2.3 | |
ownCloud | =8.2.4 | |
ownCloud | =8.2.5 | |
ownCloud | =8.2.6 | |
ownCloud | =8.2.7 | |
ownCloud | =8.2.8 | |
ownCloud | =9.0.0 | |
ownCloud | =9.0.1 | |
ownCloud | =9.0.2 | |
ownCloud | =9.0.3 | |
ownCloud | =9.0.4 | |
ownCloud | =9.0.5 | |
ownCloud | =9.0.6 | |
ownCloud | =9.1.0 | |
ownCloud | =9.1.1 | |
ownCloud | =9.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-5867 has a DB severity rating of medium due to the potential for denial of service.
To fix CVE-2017-5867, upgrade your ownCloud server to versions 8.1.11, 8.2.9, 9.0.7, or 9.1.3 or later.
CVE-2017-5867 affects ownCloud Server versions before 8.1.11, 8.2.x before 8.2.9, 9.0.x before 9.0.7, and 9.1.x before 9.1.3.
CVE-2017-5867 is a denial of service vulnerability that allows remote authenticated users to hang the server and flood log files.
Remote authenticated users of the affected versions of ownCloud are primarily affected by CVE-2017-5867.