munin-cgi-graph in Munin 2.0 rc4 allows remote attackers to cause a denial of service (disk or memory consumption) via many image requests with large values in the (1) sizex or (2) sizey parameters.
{ "urgency": "not yet assigned" }