Actions
Security #8304
closed
PA
PA
dcerpc: internal buffering logic leads to quadratic complexity
Security #8304:
dcerpc: internal buffering logic leads to quadratic complexity
Git IDs:
281f419c0481f7d24d8ce5482b962673a3938e9b
Severity:
HIGH
Disclosure Date:
05/18/2026
Description
Found by oss-fuzz
https://issues.oss-fuzz.com/u/1/issues/485091383
Fixed in 8 and main by #5699
PA Updated by Philippe Antoine 2 months ago
- Status changed from Assigned to In Review
Gitlab MR
SB Updated by Shivani Bhardwaj about 2 months ago
- Subject changed from dcerpc: internal buffering with split_off(0) leads to quadratic complexity to dcerpc: internal buffering logic leads to quadratic complexity
VJ Updated by Victor Julien about 2 months ago
- Severity set to HIGH
Causes high processing cost, leading to reduction of availability. So HIGH.
JI Updated by Jason Ish about 2 months ago
- CVE set to 2026-31937
VJ Updated by Victor Julien about 2 months ago
- Status changed from In Review to Resolved
- Git IDs updated (diff)
VJ Updated by Victor Julien about 1 month ago
- Status changed from Resolved to Closed
SB Updated by Shivani Bhardwaj 27 days ago
- Private changed from Yes to No
Actions