CVE Vulnerabilities

CVE-2024-4227

Excessive Iteration

Published: Jan 15, 2025 | Modified: Jan 15, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

In Genivia gSOAP with a specific configuration an unauthenticated remote attacker can generate a high CPU load when forcing to parse an XML having duplicate ID attributes which can lead to a DoS.

Weakness

The product performs an iteration or loop without sufficiently limiting the number of times that the loop is executed.

References