Mattermost fails to properly validate a RegExp built off the server URL path, allowing an attacker in control of an enrolled server to mount a Denial Of Service.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-58149 Mattermost fails to properly validate a RegExp built off the server URL path, allowing an attacker in control of an enrolled server to mount a Denial Of Service.
Fixes

Solution

Update Mattermost Desktop to versions v5.5.1 or higher.


Workaround

No workaround given by the vendor.

References
History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: Mattermost

Published:

Updated: 2024-09-05T18:12:06.794Z

Reserved: 2023-10-31T10:56:31.545Z

Link: CVE-2023-5876

cve-icon Vulnrichment

Updated: 2024-08-02T08:14:24.301Z

cve-icon NVD

Status : Modified

Published: 2023-11-02T09:15:08.747

Modified: 2024-11-21T08:42:41.470

Link: CVE-2023-5876

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses