CVE-2021-4213
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 1.6%
exploitation probability
1.6%top 25% of all CVEs
observed exploitation
nono source reports it
A flaw was found in JSS, where it did not properly free up all memory. Over time, the wasted memory builds up in the server memory, saturating the server’s RAM. This flaw allows an attacker to force the invocation of an out-of-memory process, causing a denial of service.
Affected products
n/a · JSSReferences
https://access.redhat.com/security/cve/CVE-2021-4213https://bugzilla.redhat.com/show_bug.cgi?id=2042900https://github.com/dogtagpki/jss/commit/3aabe0e9d59b0a42e68ac8cd0468f9c5179967d2https://github.com/dogtagpki/jss/commit/5922560a78d0dee61af8a33cc9cfbf4cfa291448https://security-tracker.debian.org/tracker/CVE-2021-4213