| Vulnerability Name: | CVE-2016-4423 (CCN-113797) | ||||||||||||||||||||||||||||||||||||||||
| Assigned: | 2016-05-09 | ||||||||||||||||||||||||||||||||||||||||
| Published: | 2016-05-09 | ||||||||||||||||||||||||||||||||||||||||
| Updated: | 2016-06-03 | ||||||||||||||||||||||||||||||||||||||||
| Summary: | The attemptAuthentication function in Component/Security/Http/Firewall/UsernamePasswordFormAuthenticationListener.php in Symfony before 2.3.41, 2.7.x before 2.7.13, 2.8.x before 2.8.6, and 3.0.x before 3.0.6 does not limit the length of a username stored in a session, which allows remote attackers to cause a denial of service (session storage consumption) via a series of authentication attempts with long, non-existent usernames. | ||||||||||||||||||||||||||||||||||||||||
| CVSS v3 Severity: | 7.5 High (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H) 6.5 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C)
4.6 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L/E:U/RL:O/RC:C)
| ||||||||||||||||||||||||||||||||||||||||
| CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P)
| ||||||||||||||||||||||||||||||||||||||||
| Vulnerability Type: | CWE-399 | ||||||||||||||||||||||||||||||||||||||||
| Vulnerability Consequences: | Denial of Service | ||||||||||||||||||||||||||||||||||||||||
| References: | Source: MITRE Type: CNA CVE-2016-4423 Source: CCN Type: Symfony Web site High Performance PHP Framework for Web Development - Symfony Source: DEBIAN Type: UNKNOWN DSA-3588 Source: XF Type: UNKNOWN symfony-cve20164423-dos(113797) Source: CONFIRM Type: UNKNOWN https://github.com/symfony/symfony/pull/18733 Source: CCN Type: Symfony blog, May 9, 2016 CVE-2016-4423: Large username storage in session Source: CONFIRM Type: Vendor Advisory https://symfony.com/blog/cve-2016-4423-large-username-storage-in-session Source: CCN Type: WhiteSource Vulnerability Database CVE-2016-4423 | ||||||||||||||||||||||||||||||||||||||||
| Vulnerable Configuration: | Configuration 1: Configuration 2: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||||||||||||||||||||||||||||||
| Oval Definitions | |||||||||||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||||||||||
| BACK | |||||||||||||||||||||||||||||||||||||||||