OX App Suite before backend 7.10.6-rev37 does not check size limits when downloading, e.g., potentially allowing a crafted iCal feed to provide an unlimited amount of data.
{
"versions": [
{
"introduced": "0"
},
{
"fixed": "7.10.6"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-NA"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev10"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev11"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev12"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev13"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev14"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev15"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev16"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev17"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev18"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev19"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev20"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev21"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev22"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev23"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev24"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev25"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev26"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev27"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev28"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev29"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev30"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev31"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev32"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev33"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev34"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev35"
},
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev36"
}
]
}[
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev01"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev02"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev03"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev04"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev05"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev06"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev07"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev08"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.10.6-rev09"
}
]
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-24603.json"