Uploaded image for project: 'Confluence Data Center'
  1. Confluence Data Center
  2. CONFSERVER-22069

Profile picture thumbnail generation can consume unlimited amount of memory

      Discovered a Studio customer, you can upload a very large profile picture to expose the same problem as CONF-21480, just in a different area of the application.

      We should limit the size of images we're willing to load into memory to avoid this problem with user pictures.

            [CONFSERVER-22069] Profile picture thumbnail generation can consume unlimited amount of memory

            It is possible to use the xml-rpc api to upload an image of any size as a user's profile picture. This was tested against an ondemand fireball-144 instance.

            David Black added a comment - It is possible to use the xml-rpc api to upload an image of any size as a user's profile picture. This was tested against an ondemand fireball-144 instance.

            VitalyA added a comment -

            dblack to verify scope.

            VitalyA added a comment - dblack to verify scope.

            David Black added a comment - - edited

            CVSS score: 6.8 => High severity

            Exploitability Metrics

            AccessVector Network
            AccessComplexity Low
            Authentication Single Instance

            Impact Metrics

            ConfImpact None
            IntegImpact None
            AvailImpact Complete

            See https://extranet.atlassian.com/display/SECCOUNCIL/How+to+evaluate+vulnerability+severity+under+CVSS for details and http://nvd.nist.gov/cvss.cfm?calculator&adv&version=2 for score calculator.

            David Black added a comment - - edited CVSS score: 6.8 => High severity Exploitability Metrics AccessVector Network AccessComplexity Low Authentication Single Instance Impact Metrics ConfImpact None IntegImpact None AvailImpact Complete See https://extranet.atlassian.com/display/SECCOUNCIL/How+to+evaluate+vulnerability+severity+under+CVSS for details and http://nvd.nist.gov/cvss.cfm?calculator&adv&version=2 for score calculator.

              etom edith (Inactive)
              matt@atlassian.com Matt Ryall
              Affected customers:
              0 This affects my team
              Watchers:
              6 Start watching this issue

                Created:
                Updated:
                Resolved: