CVE-2023-45703: HCL Launch is susceptible to a Denial of Service vulnerability
Published Dec 20, 2023
·Updated
HCL Launch may mishandle input validation of an uploaded archive file leading to a denial of service due to resource exhaustion.
Affected Software
4 affected components
Hcltechsw Hcl Launch>=7.0.0.0<=7.0.5.18
Hcltechsw Hcl Launch>=7.1.0.0<=7.1.2.14
Hcltechsw Hcl Launch>=7.2.0.0<=7.2.3.7
Hcltechsw Hcl Launch>=7.3.0.0<=7.3.2.2
Event History
Dec 20, 2023
CVE Published
11:33 PM
Data Sourced
11:33 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2023-45703?
CVE-2023-45703 has been classified as a denial of service vulnerability due to resource exhaustion.
2
How do I fix CVE-2023-45703?
To mitigate CVE-2023-45703, upgrade to a version of HCL Launch that is not affected, specifically above 7.0.5.18, 7.1.2.14, 7.2.3.7, or 7.3.2.2.
3
What versions of HCL Launch are affected by CVE-2023-45703?
CVE-2023-45703 affects HCL Launch versions from 7.0.0.0 up to 7.0.5.18, 7.1.0.0 up to 7.1.2.14, 7.2.0.0 up to 7.2.3.7, and 7.3.0.0 up to 7.3.2.2.
4
What type of risk does CVE-2023-45703 pose to systems?
CVE-2023-45703 poses a risk of denial of service, which can lead to system unavailability by exhausting resources.
5
Is there a workaround for CVE-2023-45703?
There are no known workarounds for CVE-2023-45703; the primary mitigation is upgrading to an unaffected version.