CVE-2023-41102

An issue was discovered in the captive portal in OpenNDS before version 10.1.3. It has multiple memory leaks due to not freeing up allocated memory. This may lead to a Denial-of-Service condition due to the consumption of all available memory. Affected OpenNDS before version 10.1.3 fixed in OpenWrt master and OpenWrt 23.05 on 23. November by updating OpenNDS to version 10.2.0.
Configurations

Configuration 1 (hide)

cpe:2.3:a:opennds:opennds:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2023-11-17 06:15

Updated : 2024-07-03 01:41


NVD link : CVE-2023-41102

Mitre link : CVE-2023-41102

CVE.ORG link : CVE-2023-41102


JSON object : View

Products Affected

opennds

  • opennds
CWE
CWE-401

Missing Release of Memory after Effective Lifetime

CWE-400

Uncontrolled Resource Consumption