QID 996423
Date Published: 2023-12-26
QID 996423: Java (Maven) Security Update for org.apache.james:james-server (GHSA-92j7-34x9-f3jw)
Spooler in Apache Foundation James before 2.2.0 allows local users to cause a denial of service (memory consumption) by triggering various error conditions in the retrieve function, which prevents a lock from being released and causes a memory leak.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-92j7-34x9-f3jw for updates and patch information.
Vendor References
- GHSA-92j7-34x9-f3jw -
github.com/advisories/GHSA-92j7-34x9-f3jw
CVEs related to QID 996423
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-92j7-34x9-f3jw | org.apache.james:james-server |
|