CVE-2021-21439

DoS attack can be performed when an email contains specially designed URL in the body. It can lead to the high CPU usage and cause low quality of service, or in extreme case bring the system to a halt. This issue affects: OTRS AG ((OTRS)) Community Edition 6.0.x version 6.0.1 and later versions. OTRS AG OTRS 7.0.x version 7.0.26 and prior versions; 8.0.x version 8.0.13 and prior versions.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:otrs:otrs:*:*:*:*:community:*:*:*
cpe:2.3:a:otrs:otrs:*:*:*:*:*:*:*:*
cpe:2.3:a:otrs:otrs:*:*:*:*:*:*:*:*

History

31 Aug 2023, 03:15

Type Values Removed Values Added
References
  • (MLIST) https://lists.debian.org/debian-lts-announce/2023/08/msg00040.html -

29 Jun 2021, 16:52

Type Values Removed Values Added
CWE CWE-755
CVSS v2 : unknown
v3 : unknown
v2 : 4.3
v3 : 6.5
CPE cpe:2.3:a:otrs:otrs:*:*:*:*:*:*:*:*
cpe:2.3:a:otrs:otrs:*:*:*:*:community:*:*:*
References (MISC) https://otrs.com/release-notes/otrs-security-advisory-2021-09/ - (MISC) https://otrs.com/release-notes/otrs-security-advisory-2021-09/ - Vendor Advisory

14 Jun 2021, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2021-06-14 08:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-21439

Mitre link : CVE-2021-21439

CVE.ORG link : CVE-2021-21439


JSON object : View

Products Affected

otrs

  • otrs
CWE
CWE-755

Improper Handling of Exceptional Conditions

CWE-754

Improper Check for Unusual or Exceptional Conditions