Lucene search

K
githubGitHub Advisory DatabaseGHSA-X38M-486C-2WR9
HistoryMay 17, 2022 - 3:16 a.m.

Denial-of-service possibility in logout() view by filling session store

2022-05-1703:16:12
GitHub Advisory Database
github.com
2

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

7.2 High

AI Score

Confidence

Low

0.016 Low

EPSS

Percentile

87.6%

The (1) contrib.sessions.backends.base.SessionBase.flush and (2) cache_db.SessionStore.flush functions in Django 1.7.x before 1.7.10, 1.4.x before 1.4.22, and possibly other versions create empty sessions in certain circumstances, which allows remote attackers to cause a denial of service (session store consumption) via unspecified vectors.

Affected configurations

Vulners
Node
django-registration_projectdjango-registrationRange<1.4.22django
OR
django-registration_projectdjango-registrationRange<1.7.10django
CPENameOperatorVersion
djangolt1.4.22
djangolt1.7.10

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

7.2 High

AI Score

Confidence

Low

0.016 Low

EPSS

Percentile

87.6%