CVE-2017-5388 - log back

CVE-2017-5388 created at 25 Sep 2019 19:31:40
Severity
+ Low
Remote
+ Remote
Type
+ Denial of service
Description
+ In Firefox < 51, a STUN server in conjunction with a large number of webkitRTCPeerConnection objects can be used to send large STUN packets in a short period of time due to a lack of rate limiting being applied on e10s systems, allowing for a denial of service attack.
References
+ https://www.mozilla.org/en-US/security/advisories/mfsa2017-01/#CVE-2017-5388
+ https://bugzilla.mozilla.org/show_bug.cgi?id=1281482
Notes