GHSA-92j7-34x9-f3jw

Suggest an improvement
Source
https://github.com/advisories/GHSA-92j7-34x9-f3jw
Import Source
https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/04/GHSA-92j7-34x9-f3jw/GHSA-92j7-34x9-f3jw.json
JSON Data
https://api.osv.dev/v1/vulns/GHSA-92j7-34x9-f3jw
Aliases
  • CVE-2004-2650
Published
2022-04-29T03:01:51Z
Modified
2023-11-08T03:56:45.617976Z
Summary
Apache James Denial of Service
Details

Spooler in Apache Foundation James before 2.2.0 allows local users to cause a denial of service (memory consumption) by triggering various error conditions in the retrieve function, which prevents a lock from being released and causes a memory leak.

Database specific
{
    "nvd_published_at": "2004-12-31T05:00:00Z",
    "cwe_ids": [
        "CWE-400"
    ],
    "severity": "MODERATE",
    "github_reviewed": true,
    "github_reviewed_at": "2023-09-18T23:29:49Z"
}
References

Affected packages

Maven / org.apache.james:james-server

Package

Name
org.apache.james:james-server
View open source insights on deps.dev
Purl
pkg:maven/org.apache.james/james-server

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.2.0