[
https://issues.apache.org/jira/browse/DIRAPI-466?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Emmanuel Lécharny resolved DIRAPI-466.
--------------------------------------
Resolution: Fixed
Fixed with commit 835ce23b7c2130c85dc92418c78e6753cba1af4c
> Telephone-number syntax regex has catastrophic exponential backtracking
> -----------------------------------------------------------------------
>
> Key: DIRAPI-466
> URL: https://issues.apache.org/jira/browse/DIRAPI-466
> Project: Directory Client API
> Issue Type: Bug
> Affects Versions: 2.1.8
> Reporter: Emmanuel Lécharny
> Priority: Major
> Fix For: 2.1.9
>
>
> An attacker who can submit an _add_/_modify_ to an *ApacheDS*-style server
> (any authenticated user, or anonymous where permitted) includes
> _telephoneNumber_: ~64 digits followed by one letter.
> Schema validation enters ~2^63-step backtracking, pinning a core effectively
> forever, and subsequent telephone-number validations block on the
> synchronized pattern, wedging the service.
> The same value in an entry parsed by a schema-aware client _Entry_ has the
> same effect client-side.
--
This message was sent by Atlassian Jira
(v8.20.10#820010)
---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]