VDB

CVE-2019-25072

CVE-2019-25072 REJECTED

Due to support of Gzip compression in request bodies, as well as a lack of limiting response body sizes, a malicious server can cause a client to consume a significant amount of system resources, which may be used as a denial of service vector.

EPSS 0.27% · 50.8th percentile

Risk Scores

EPSS Score
0.27%
50.8th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTStendermint0, 0.8.0+git20170113.0.764091d-2

Timeline

  • Apr 14, 2021 CVE Published
  • Dec 28, 2022 EPSS Score
  • Feb 7, 2023 EPSS Score
  • Feb 17, 2023 CVE Updated
  • Mar 7, 2023 EPSS Score
  • Mar 21, 2023 EPSS Score
  • May 1, 2023 EPSS Score
  • Jun 11, 2023 EPSS Score
  • Jul 23, 2023 EPSS Score
  • Sep 2, 2023 EPSS Score
  • Oct 13, 2023 EPSS Score
  • Nov 24, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›