CVE Vulnerabilities

CVE-2023-6481

Published: Dec 04, 2023 | Modified: Dec 07, 2023
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A serialization vulnerability in logback receiver component part of logback version 1.4.13, 1.3.13 and 1.2.12 allows an attacker to mount a Denial-Of-Service attack by sending poisoned data.

Affected Software

Name Vendor Start Version End Version
Logback Qos 1.2.12 (including) 1.2.12 (including)
Logback Qos 1.3.13 (including) 1.3.13 (including)
Logback Qos 1.4.13 (including) 1.4.13 (including)

References