CVE-2024-48080

An issue in aedes v0.51.2 allows attackers to cause a Denial of Service(DoS) via a crafted request. NOTE: the Supplier indicates that exploitation cannot occur because of the protection mechanism in the validateTopic function in lib/utils.js.
Configurations

No configuration.

History

21 Feb 2025, 06:15

Type Values Removed Values Added
Summary (en) An issue in aedes v0.51.2 allows attackers to cause a Denial of Service(DoS) via a crafted request. (en) An issue in aedes v0.51.2 allows attackers to cause a Denial of Service(DoS) via a crafted request. NOTE: the Supplier indicates that exploitation cannot occur because of the protection mechanism in the validateTopic function in lib/utils.js.
References
  • () https://gist.github.com/mcollina/f06af2098665e4bb8372104425f3999e -
  • () https://github.com/moscajs/aedes/issues/1024 -
  • () https://github.com/moscajs/aedes/issues/1024#issuecomment-2671695219 -
  • () https://github.com/moscajs/aedes/releases/tag/v0.51.2 -

Information

Published : 2024-12-03 19:15

Updated : 2025-02-21 06:15


NVD link : CVE-2024-48080

Mitre link : CVE-2024-48080

CVE.ORG link : CVE-2024-48080


JSON object : View

Products Affected

No product.

CWE
CWE-770

Allocation of Resources Without Limits or Throttling