BitsCast 0.13.0 allows remote attackers to cause a denial of service (application crash) via an RSS 2.0 feed item with certain invalid strings in a pubDate element, as demonstrated by repeated ../A or A/../ patterns.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Bitscast | Bitscast | 0.13.0 (including) | 0.13.0 (including) |