Bug 2272578 (T357760) - mediawiki: denial of service via GET request to Special:MovePage
Summary: mediawiki: denial of service via GET request to Special:MovePage
Keywords:
Status: NEW
Alias: T357760
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
low
low
Target Milestone: ---
Assignee: Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 2278774
Blocks:
TreeView+ depends on / blocked
 
Reported: 2024-04-02 02:58 UTC by Robb Gatica
Modified: 2024-05-03 02:11 UTC (History)
0 users

Fixed In Version: mediawiki 1.39.7, mediawiki 1.40.3, mediawiki 1.41.1
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description Robb Gatica 2024-04-02 02:58:49 UTC
Mediawiki security releases 1.39.7, 1.40.3 and 1.41.1. This includes a fix for a denial of service that occurs when a user opens Special:MovePage for a page containing a large number (tens of thousands) of subpages. Due to excessive queries used to create the list of subpages the maximum request time will be exceeded.

References:
https://phabricator.wikimedia.org/T357760
https://lists.wikimedia.org/hyperkitty/list/wikitech-l@lists.wikimedia.org/thread/V3WXEPXV2DU6WTVEKK4XHW4QXD5OFKD7/

Comment 1 Robb Gatica 2024-05-03 02:11:37 UTC
CVE is still pending

Comment 2 Robb Gatica 2024-05-03 02:11:49 UTC
Created mediawiki tracking bugs for this issue:

Affects: fedora-all [bug 2278774]


Note You need to log in before you can comment on or make changes to this bug.