CVE-2024-34079

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-34079
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-34079.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2024-34079
Aliases
Related
Published
2024-05-14T15:38:29Z
Modified
2025-01-14T19:46:51Z
Summary
[none]
Details

octo-sts is a GitHub App that acts like a Security Token Service (STS) for the Github API. This vulnerability can spike the resource utilization of the STS service, and combined with a significant traffic volume could potentially lead to a denial of service. This vulnerability is fixed in 0.1.0

References

Affected packages

Git / github.com/octo-sts/app

Affected ranges

Type
GIT
Repo
https://github.com/octo-sts/app
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Fixed