CVE-2022-25897

The package org.eclipse.milo:sdk-server before 0.6.8 are vulnerable to Denial of Service (DoS) when bypassing the limitations for excessive memory consumption by sending multiple CloseSession requests with the deleteSubscription parameter equal to False.
Configurations

Configuration 1 (hide)

cpe:2.3:a:eclipse:milo:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2022-09-08 05:15

Updated : 2024-11-21 06:53


NVD link : CVE-2022-25897

Mitre link : CVE-2022-25897

CVE.ORG link : CVE-2022-25897


JSON object : View

Products Affected

eclipse

  • milo
CWE
CWE-770

Allocation of Resources Without Limits or Throttling