Improper Handling of Exceptional Conditions vulnerability in Daurnimator lua-http library allows Excessive Allocation and a denial of service (DoS) attack to be executed by sending a properly crafted request to the server.
This issue affects lua-http: all versions before commit ddab283.
References
Link | Resource |
---|---|
https://cert.pl/posts/2023/09/CVE-2023-4540/ | Patch Third Party Advisory |
https://github.com/daurnimator/lua-http/commit/ddab2835c583d45dec62680ca8d3cbde55e0bae6 | Patch |
https://https://cert.pl/en/posts/2023/09/CVE-2023-4540/ | Broken Link |
Configurations
History
No history.
Information
Published : 2023-09-05 08:15
Updated : 2023-10-13 01:30
NVD link : CVE-2023-4540
Mitre link : CVE-2023-4540
CVE.ORG link : CVE-2023-4540
JSON object : View
Products Affected
daurnimator
- lua-http
CWE
CWE-755
Improper Handling of Exceptional Conditions