PT-2023-18768 · Mediawiki+1 · Mediawiki+1

Ladsgroup

·

Published

2023-01-10

·

Updated

2025-04-07

·

CVE-2023-22909

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions MediaWiki versions prior to 1.35.9 MediaWiki versions 1.36.x through 1.38.x before 1.38.5 MediaWiki versions 1.39.x before 1.39.1
Description An issue in MediaWiki allows remote attackers to cause a denial of service. This is because the SpecialMobileHistory feature can lead to slow database queries, enabling the denial of service.
Recommendations For versions prior to 1.35.9, update to version 1.35.9 or later. For versions 1.36.x through 1.38.x, update to version 1.38.5 or later. For versions 1.39.x, update to version 1.39.1 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

ALT-PU-2023-4877
ALT-PU-2024-11168
ALT-PU-2024-1228
BIT-MEDIAWIKI-2023-22909
CVE-2023-22909
MGASA-2023-0204

Affected Products

Alt Linux
Mediawiki