PT-2017-17028 · Atheme · Atheme
Mniip
·
Published
2017-03-02
·
Updated
2024-06-15
·
CVE-2017-6384
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Atheme version 7.2.7
Description
A memory leak in the
login user function allows a remote unauthenticated attacker to consume memory and cause a denial of service.Recommendations
For Atheme version 7.2.7, update to version 7.2.8 to resolve the issue.
Fix
Missing Release of Resource after Effective Lifetime
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Atheme