CVE-2011-2532

Publication date 22 June 2011

Last updated 24 July 2024


Ubuntu priority

Description

The json.decode function in util/json.lua in Prosody 0.8.x before 0.8.1 might allow remote attackers to cause a denial of service (infinite loop) via invalid JSON data, as demonstrated by truncated data.

Status

Package Ubuntu Release Status
prosody 11.04 natty
Not affected
10.10 maverick
Not affected
10.04 LTS lucid
Not affected
8.04 LTS hardy Not in release