CVE-2021-3810: Inefficient Regular Expression Complexity in cdr/code-server
Published Sep 17, 2021
·Updated
code-server is vulnerable to Inefficient Regular Expression Complexity
Affected Software
1 affected component
Coder Code-Server<3.12.0
Remediation
Event History
Sep 17, 2021
CVE Published
via MITRE·06:15 AM
Data Sourced
via MITRE·06:15 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-3810?
CVE-2021-3810 has a medium severity rating due to its potential impact on performance from inefficient regular expression complexity.
2
How do I fix CVE-2021-3810?
To fix CVE-2021-3810, upgrade code-server to version 3.12.0 or later, which addresses the vulnerability.
3
What software is affected by CVE-2021-3810?
CVE-2021-3810 affects code-server versions prior to 3.12.0.
4
What type of vulnerability is CVE-2021-3810?
CVE-2021-3810 is classified as an inefficient regular expression complexity vulnerability.
5
Can CVE-2021-3810 lead to denial of service?
Yes, CVE-2021-3810 can potentially lead to denial of service due to the performance degradation from inefficient regular expressions.