漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
A flaw was found in the `/v2/_catalog` endpoint in distribution/distribution, which accepts a parameter to control the maximum number of records returned (query string: `n`). This vulnerability allows a malicious user to submit an unreasonably large value for `n,` causing the allocation of a massive string array, possibly causing a denial of service through excessive use of memory.
CVSS Information
N/A
Vulnerability Type
从输入到API的未定义行为
Vulnerability Title
Distribution 安全漏洞
Vulnerability Description
Distribution是Distribution个人开发者的用于打包、运输、存储和交付内容的工具集。 Distribution 存在安全漏洞,该漏洞源于允许恶意用户提交不合理的值,导致分配大量字符串数组,可能通过过度使用内存导致拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A