Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Debian: DSA-5047-1 Moderate: Prosody Denial Of Service Issue

debian
Calendar Grey January 15, 2022
Debian Logo
A security vulnerability was discovered by Martin Green in the WebSocket implementation of Prosody, which has now been addressed in the latest Debian patches.
Matthew Wild discovered that the WebSockets code in Prosody, a lightweight Jabber/XMPP server, was susceptible to denial of service

Summary

Matthew Wild discovered that the WebSockets code in Prosody, a
lightweight Jabber/XMPP server, was susceptible to denial of service.

For the oldstable distribution (buster), this problem has been fixed
in version 0.11.2-1+deb10u3.

For the stable distribution (bullseye), this problem has been fixed in
version 0.11.9-2+deb11u1.

We recommend that you upgrade your prosody packages.

For the detailed security status of prosody please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/prosody

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Package: prosody
CVE ID: CVE-2022-0217

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here