PT-2022-7348 · Bottle+6 · Bottle+6

Elton Nokaj

·

Published

2022-05-29

·

Updated

2024-10-28

·

CVE-2022-31799

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Bottle versions prior to 0.12.20
Description The issue is related to uncontrolled resource consumption and mishandling of errors during early request binding. This can allow a remote attacker to cause a denial of service.
Recommendations For versions prior to 0.12.20, update to version 0.12.20 or later to resolve the issue. As a temporary workaround, consider restricting access to the application to minimize the risk of exploitation.

Fix

DoS

Improper Handling of Exceptional Conditions

Weakness Enumeration

Related Identifiers

ALT-PU-2022-2264
ALT-PU-2024-14690
BDU:2024-04113
CVE-2022-31799
DLA-3048-1
DSA-5159-1
GHSA-XHP9-4947-RQ78
MGASA-2022-0245
OESA-2022-1712
OPENSUSE-SU-2022_3103-1
OPENSUSE-SU-2024:13210-1
PYSEC-2022-227
SUSE-SU-2022:3103-1
SUSE-SU-2022_3103-1
USN-5532-1
USN-5532-2

Affected Products

Alt Linux
Astra Linux
Bottle
Linuxmint
Red Os
Suse
Ubuntu