An issue was discovered in Datalust Seq before 2024.3.13545. Expansion of identifiers in message templates can be used to bypass the system "Event body limit bytes" setting, leading to increased resource consumption. With sufficiently large events, there can be disk space exhaustion (if saved to disk) or a termination of the server process with an out-of-memory error.
Metrics
Affected Vendors & Products
References
History
Tue, 11 Mar 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 11 Mar 2025 08:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An issue was discovered in Datalust Seq before 2024.3.13545. Expansion of identifiers in message templates can be used to bypass the system "Event body limit bytes" setting, leading to increased resource consumption. With sufficiently large events, there can be disk space exhaustion (if saved to disk) or a termination of the server process with an out-of-memory error. | |
Weaknesses | CWE-770 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: mitre
Published: 2025-03-11T00:00:00.000Z
Updated: 2025-03-11T13:22:20.067Z
Reserved: 2025-03-10T00:00:00.000Z
Link: CVE-2025-27911

Updated: 2025-03-11T13:22:15.353Z

Status : Received
Published: 2025-03-11T08:15:11.500
Modified: 2025-03-11T08:15:11.500
Link: CVE-2025-27911

No data.