Mattermost fails to properly sanitize the request to /api/v4/redirect_location allowing an attacker, sending a specially crafted request to /api/v4/redirect_location, to fill up the memory due to caching large items.
References
Link Resource
https://mattermost.com/security-updates Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: Mattermost

Published: 2023-11-06T15:48:23.590Z

Updated: 2023-11-06T15:48:23.590Z

Reserved: 2023-11-06T15:45:39.602Z


Link: CVE-2023-5969

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-11-06T16:15:42.987

Modified: 2023-11-14T17:13:54.790


Link: CVE-2023-5969

JSON object: View

cve-icon Redhat Information

No data.

CWE