Security Advisory

CVE-2019-11923

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-12-04 16:00:21
Last updated 2024-08-04 23:10:29
Assigner facebook
State PUBLISHED

Description

In Mcrouter prior to v0.41.0, the deprecated ASCII parser would allocate a buffer to a user-specified length with no maximum length enforced, allowing for resource exhaustion or denial of service.