Back to search
CVE-2011-4320
Published: Feb 18, 2012
Modified: Aug 7, 2024
PUBLISHED
Description
The mod_pubsub module (mod_pubsub.erl) in ejabberd 2.1.8 and 3.0.0-alpha-3 allows remote authenticated users to cause a denial of service (infinite loop) via a stanza with a publish tag that lacks a node attribute.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
46915
third-party-advisory
x_refsource_SECUNIA
[oss-security] 20111119 CVE request: ejabberd before 2.1.9
mailing-list
x_refsource_MLIST
77302
vdb-entry
x_refsource_OSVDB
https://support.process-one.net/browse/EJAB-1498
x_refsource_CONFIRM
[oss-security] 20111119 Re: CVE request: ejabberd before 2.1.9
mailing-list
x_refsource_MLIST
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now