No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 01 Oct 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 01 Oct 2026 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Corvusoft
Corvusoft restbed |
|
| Vendors & Products |
Corvusoft
Corvusoft restbed |
Wed, 30 Sep 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | restbed through 5.0.0 accepts WebSocket frames with declared payload lengths up to 2^63 bytes and buffers the payload without size limits in an unbounded stream buffer. Remote unauthenticated attackers can declare large frame sizes and stream payload data to exhaust server memory, causing denial of service through process crash. | |
| Title | restbed through 5.0.0 WebSocket Memory Exhaustion via Unbounded Frame Buffering | |
| Weaknesses | CWE-770 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-10-01T18:00:00.791Z
Reserved: 2026-09-30T16:02:59.545Z
Link: CVE-2026-103472
Updated: 2026-10-01T17:59:57.509Z
Status : Deferred
Published: 2026-09-30T18:18:17.330
Modified: 2026-10-01T19:17:18.083
Link: CVE-2026-103472
No data.
OpenCVE Enrichment
Updated: 2026-10-01T15:38:49Z