-
Bug
-
Resolution: Fixed
-
High
-
2.5.4
-
None
-
Standalone
Description:
When you give more labels to a content, then Confluence split up the user input on spaces, and then make az SQL query against each word (or something like this).
Exploit:
Giving x thousand characters (depends on the machine) separated by space as label results the system is breaking down.
- causes
-
CONFSERVER-29910 Allow pages/spaces to be favorited by more than 500 users
- Closed
- mentioned in
-
Page Failed to load
[CONFSERVER-8978] Vulnerability against DoS attack via labels
Workflow | Original: JAC Bug Workflow v3 [ 2893008 ] | New: CONFSERVER Bug Workflow v4 [ 2984892 ] |
Workflow | Original: JAC Bug Workflow v2 [ 2792599 ] | New: JAC Bug Workflow v3 [ 2893008 ] |
Status | Original: Resolved [ 5 ] | New: Closed [ 6 ] |
Workflow | Original: JAC Bug Workflow [ 2722425 ] | New: JAC Bug Workflow v2 [ 2792599 ] |
Workflow | Original: Confluence Workflow - Public Facing - Restricted v5 - TEMP [ 2385617 ] | New: JAC Bug Workflow [ 2722425 ] |
Workflow | Original: Confluence Workflow - Public Facing - Restricted v5 [ 2281763 ] | New: Confluence Workflow - Public Facing - Restricted v5 - TEMP [ 2385617 ] |
Workflow | Original: Confluence Workflow - Public Facing - Restricted v5.1 - TEMP [ 2222675 ] | New: Confluence Workflow - Public Facing - Restricted v5 [ 2281763 ] |
Workflow | Original: Confluence Workflow - Public Facing - Restricted v5 - TEMP [ 2171611 ] | New: Confluence Workflow - Public Facing - Restricted v5.1 - TEMP [ 2222675 ] |
Workflow | Original: Confluence Workflow - Public Facing - Restricted v5 [ 1932968 ] | New: Confluence Workflow - Public Facing - Restricted v5 - TEMP [ 2171611 ] |
Workflow | Original: Confluence Workflow - Public Facing - Restricted v3 [ 1732779 ] | New: Confluence Workflow - Public Facing - Restricted v5 [ 1932968 ] |
Workflow | Original: CONF Bug Subtask WF (TEMP) [ 1691367 ] | New: Confluence Workflow - Public Facing - Restricted v3 [ 1732779 ] |