CVE-2022-45693: Buffer Overflow
A flaw was found in Jettison, where it is vulnerable to a denial of service caused by a stack-based buffer overflow. By sending a specially-crafted request using the map parameter, a remote attacker can cause a denial of service.
Other sources
Jettison before v1.5.2 was discovered to contain a stack overflow via the map parameter. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted string.
Jettison is vulnerable to a denial of service, caused by a stack-based buffer overflow. By sending a specially-crafted request using the map parameter, a remote attacker could exploit this vulnerability to cause a denial of service.
— IBM
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is CVE-2022-45693?
CVE-2022-45693 is a vulnerability in Jettison that allows a remote attacker to cause a denial of service through a stack-based buffer overflow.
How does CVE-2022-45693 impact Jettison?
CVE-2022-45693 can lead to a denial of service in Jettison by exploiting a stack-based buffer overflow vulnerability.
What is the severity level of CVE-2022-45693?
CVE-2022-45693 has a severity level of high.
Which versions of Jettison are affected by CVE-2022-45693?
Versions 1.5.2 and below of Jettison are affected by CVE-2022-45693.
How can I fix CVE-2022-45693?
To fix CVE-2022-45693, update Jettison to a version higher than 1.5.2.