CVE

Id
70124  
CVE No.
CVE-2014-2829  
Status
Candidate  
Description
Erlang Solutions MongooseIM through 1.3.1 rev. 2 does not properly restrict the processing of compressed XML elements, which allows remote attackers to cause a denial of service (resource consumption) via a crafted XMPP stream, aka an "xmppbomb" attack.  
Phase
Assigned (20140410)  
Votes
None (candidate not yet proposed)  
Comments