PT-2017-10821 · Lightbend · Akka Http

Martins Rumkovskis

·

Publicado

2017-10-04

·

Atualizado

2018-10-22

·

CVE-2017-1000118

CVSS v3.1

7.5

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Akka HTTP versions prior to 10.0.6
Description The issue is related to an Illegal Media Range in the Accept Header, which causes a StackOverflowError and leads to a Denial of Service.
Recommendations For versions prior to 10.0.6, update to version 10.0.6 or later to resolve the issue.

Correção

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-1000118
GHSA-GFX6-PH4Q-Q54Q

Produtos afetados

Akka Http