Advisory Database
  • Advisories
  • Dependency Scanning
  1. maven
  2. ›
  3. org.jboss.ws/jbossws-common
  4. ›
  5. CVE-2011-1483

CVE-2011-1483: Uncontrolled Resource Consumption

July 29, 2013 (updated October 9, 2019)

wsf/common/DOMUtils.java does not properly handle recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted request containing an XML document with a DOCTYPE declaration and a large number of nested entity references, a similar issue to CVE-2003-1564.

Code Behaviors & Features

Detect and mitigate CVE-2011-1483 with GitLab Dependency Scanning

Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →

Affected versions

Version 1.1.0.sp7

Solution

Unfortunately, there is no solution available yet.

Impact 5 MEDIUM

AV:N/AC:L/Au:N/C:N/I:N/A:P

Learn more about CVSS

Source file

maven/org.jboss.ws/jbossws-common/CVE-2011-1483.yml

Spotted a mistake? Edit the file on GitLab.

  • Site Repo
  • About GitLab
  • Terms
  • Privacy Statement
  • Contact

Page generated Wed, 14 May 2025 12:14:30 +0000.