Vulnerabilities > CVE-2006-3379 - Unspecified vulnerability in Hiki Wiki Hiki Wiki
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN hiki-wiki
nessus
Summary
Algorithmic complexity vulnerability in Hiki Wiki 0.6.0 through 0.6.5 and 0.8.0 through 0.8.5 allows remote attackers to cause a denial of service (CPU consumption) by performing a diff between large, crafted pages that trigger the worst case.
Vulnerable Configurations
Nessus
NASL family | Debian Local Security Checks |
NASL id | DEBIAN_DSA-1119.NASL |
description | Akira Tanaka discovered a vulnerability in Hiki Wiki, a Wiki engine written in Ruby that allows remote attackers to cause a denial of service via high CPU consumption using by performing a diff between large and specially crafted Wiki pages. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 22661 |
published | 2006-10-14 |
reporter | This script is Copyright (C) 2006-2019 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/22661 |
title | Debian DSA-1119-1 : hiki - design flaw |
code |
|
References
- http://hikiwiki.org/en/advisory20060703.html
- http://hikiwiki.org/en/advisory20060703.html
- http://jvn.jp/jp/JVN%2398836916/index.html
- http://jvn.jp/jp/JVN%2398836916/index.html
- http://secunia.com/advisories/20741
- http://secunia.com/advisories/20741
- http://secunia.com/advisories/21150
- http://secunia.com/advisories/21150
- http://www.debian.org/security/2006/dsa-1119
- http://www.debian.org/security/2006/dsa-1119
- http://www.osvdb.org/26970
- http://www.osvdb.org/26970
- http://www.securityfocus.com/bid/18785
- http://www.securityfocus.com/bid/18785
- http://www.vupen.com/english/advisories/2006/2643
- http://www.vupen.com/english/advisories/2006/2643
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27507
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27507