Asymmetric denial of service In github.com/grafana/grafana
Description
Denial of service in Grafana The snapshot feature in Grafana before 7.4.2 can allow an unauthenticated remote attackers to trigger a Denial of Service via a remote API call if a commonly used configuration is set.
Specific Go Packages Affected
github.com/grafana/grafana/pkg/middleware
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
go | 7.4.2 | ||
go | 7.4.2 | ||
rpm rhel8 | 0:7.5.9-4.el8 |
Aliases
1. 2. 3. 4. 5.
References
1. 2. 3. 4. 5. 6. 7. 8. 9.