CVE-2024-50574: High severity jetbrains youtrack vulnerability
Published Oct 28, 2024
·Updated
In JetBrains YouTrack before 2024.3.47707 potential ReDoS exploit was possible via email header parsing in Helpdesk functionality
Affected Software
1 affected component
JetBrains YouTrack<2024.3.47707
Event History
Oct 28, 2024
CVE Published
via MITRE·12:55 PM
Data Sourced
via MITRE·12:55 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-50574?
CVE-2024-50574 is considered a high severity vulnerability due to its potential to exploit the ReDoS attack via email header parsing.
2
How do I fix CVE-2024-50574?
To fix CVE-2024-50574, upgrade JetBrains YouTrack to version 2024.3.47707 or later.
3
What versions of JetBrains YouTrack are affected by CVE-2024-50574?
CVE-2024-50574 affects all versions of JetBrains YouTrack prior to 2024.3.47707.
4
What type of exploit is CVE-2024-50574 associated with?
CVE-2024-50574 is associated with a potential ReDoS (Regular Expression Denial of Service) exploit.
5
Where does the CVE-2024-50574 vulnerability manifest in JetBrains YouTrack?
CVE-2024-50574 manifests during the email header parsing function in the Helpdesk feature.