← Back to CVEs
CVE-2024-24975
LOW3.5
Description
Uncontrolled Resource Consumption in Mattermost Mobile versions before 2.13.0 fails to limit the size of the code block that will be processed by the syntax highlighter, allowing an attacker to send a very large code block and crash the mobile app.
CVE Details
CVSS v3.1 Score3.5
SeverityLOW
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:L
Attack VectorNETWORK
ComplexityLOW
Privileges RequiredLOW
User InteractionREQUIRED
Published3/15/2024
Last Modified1/21/2025
Sourcenvd
Honeypot Sightings0
Affected Products
mattermost:mattermost_mobile
Weaknesses (CWE)
CWE-400
References
https://mattermost.com/security-updates(responsibledisclosure@mattermost.com)
https://mattermost.com/security-updates(af854a3a-2127-422b-91ae-364da2661108)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.