UBUNTU-CVE-2021-32918
Dashboard / Vulnerabilities / UBUNTU-CVE-2021-32918
Summary:
Details: An issue was discovered in Prosody before 0.11.9. Default settings are susceptible to remote unauthenticated denial-of-service (DoS) attacks via memory exhaustion when running under Lua 5.2 or Lua 5.3.
References: https://ubuntu.com/security/CVE-2021-32918, https://www.openwall.com/lists/oss-security/2021/05/13/1, https://prosody.im/security/advisory_20210512.txt, https://hg.prosody.im/trunk/rev/db8e41eb6eff, https://hg.prosody.im/trunk/rev/b0d8920ed5e5, https://hg.prosody.im/trunk/rev/929de6ade6b6, https://hg.prosody.im/trunk/rev/63fd4c8465fb, https://hg.prosody.im/trunk/rev/1937b3c3efb5, https://hg.prosody.im/trunk/rev/3413fea9e6db, https://blog.prosody.im/prosody-0.11.9-released/, https://www.cve.org/CVERecord?id=CVE-2021-32918
Affected packages
Package
Name: prosody
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
