Vulnerabilities > CVE-2011-2532 - Resource Management Errors vulnerability in Prosody 0.8.0
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
PARTIAL Summary
The json.decode function in util/json.lua in Prosody 0.8.x before 0.8.1 might allow remote attackers to cause a denial of service (infinite loop) via invalid JSON data, as demonstrated by truncated data.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |