Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A flaw was found in the `/v2/_catalog` endpoint in distribution/distribution, which accepts a parameter to control the maximum number of records returned (query string: `n`). This vulnerability allows a malicious user to submit an unreasonably large value for `n,` causing the allocation of a massive string array, possibly causing a denial of service through excessive use of memory.
CVSS Information
N/A
Vulnerability Type
从输入到API的未定义行为
Vulnerability Title
Distribution 安全漏洞
Vulnerability Description
Distribution是Distribution个人开发者的用于打包、运输、存储和交付内容的工具集。 Distribution 存在安全漏洞,该漏洞源于允许恶意用户提交不合理的值,导致分配大量字符串数组,可能通过过度使用内存导致拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A