QID 671117
Date Published: 2021-11-29
QID 671117: EulerOS Security Update for openwsman (EulerOS-SA-2019-2179)
Openwsman is a project intended to provide an open-source implementation of the web services management specipication (ws-management) and to expose system management information on the linux operating system using the ws-management protocol.
Ws-management is based on a suite of web services specifications and usage requirements that exposes a set of operations focused on and covers all system management aspects.
Security fix(es): openwsman, versions up to and including 2.6.9, are vulnerable to infinite loop in process_connection() when parsing specially crafted http requests.
A remote, unauthenticated attacker can exploit this vulnerability by sending malicious http request to cause denial of service to openwsman server.(cve-2019-3833)
Note: The preceding description block is extracted directly from the security advisory. Using automation, we have attempted to clean and format it as much as possible without introducing additional issues.
An arbitrary attacker may exploit this vulnerability to compromise the system.
CVEs related to QID 671117
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| EulerOS-SA-2019-2179 | EulerOS V2.0SP5 |
|