CVE-2024-32886

MEDIUM4.9EPSS 0.13%

Denial of service attack by triggering unbounded memory usage in vitess.io/vitess

Published: 5/8/2024Modified: 7/9/2024

Description

When executing a query, the vtgate will go into an endless loop that also keeps consuming memory and eventually will OOM. This causes a denial of service.

Affected packages (3)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM4.9CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H

References (9)