<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Memory Leak as Denial of service attack in Alfresco Forum</title>
    <link>https://connect.hyland.com/t5/alfresco-forum/memory-leak-as-denial-of-service-attack/m-p/123476#M33795</link>
    <description>&lt;P&gt;Hello, Angel:&lt;/P&gt;&lt;P&gt;thank you for your answer. Can you verify this point with the development team? If this security issue also happens on Community edition, a patch is needed (in orther to set the maximum memory an script can manage).&amp;nbsp; There are several customers in the world that use Alfresco Community in production environment.....&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;&lt;P&gt;Best regards.&lt;/P&gt;</description>
    <pubDate>Tue, 22 Nov 2022 14:00:29 GMT</pubDate>
    <dc:creator>jjrabadan</dc:creator>
    <dc:date>2022-11-22T14:00:29Z</dc:date>
    <item>
      <title>Memory Leak as Denial of service attack</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/memory-leak-as-denial-of-service-attack/m-p/123472#M33791</link>
      <description>&lt;P&gt;Goog morning:&lt;/P&gt;&lt;P&gt;I'd like to know if the community versions of Alfresco have also this issue. If so, are there any patches ready to fix this problem?&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;&lt;P&gt;Best regards,&lt;/P&gt;</description>
      <pubDate>Mon, 21 Nov 2022 14:20:22 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/memory-leak-as-denial-of-service-attack/m-p/123472#M33791</guid>
      <dc:creator>jjrabadan</dc:creator>
      <dc:date>2022-11-21T14:20:22Z</dc:date>
    </item>
    <item>
      <title>Re: Memory Leak as Denial of service attack</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/memory-leak-as-denial-of-service-attack/m-p/123473#M33792</link>
      <description>&lt;P&gt;May you give more details on the issue?&lt;/P&gt;
&lt;P&gt;I'm not aware of any similar to the one you describe.&lt;/P&gt;</description>
      <pubDate>Mon, 21 Nov 2022 14:49:57 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/memory-leak-as-denial-of-service-attack/m-p/123473#M33792</guid>
      <dc:creator>angelborroy</dc:creator>
      <dc:date>2022-11-21T14:49:57Z</dc:date>
    </item>
    <item>
      <title>Re: Memory Leak as Denial of service attack</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/memory-leak-as-denial-of-service-attack/m-p/123474#M33793</link>
      <description>&lt;P&gt;We received this email from Hyland last Friday:&lt;/P&gt;&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2022-11-21 at 16.37.39.png" style="width: 799px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image"&gt;&lt;img src="https://connect.hyland.com/t5/image/serverpage/image-id/1602i0B1033AE2585773A/image-size/large?v=v2&amp;amp;px=999" role="button" title="image" alt="image" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;But I'm unable to access the detail page for this.&amp;nbsp;&lt;A href="https://migration33.stage.lithium.com/t5/user/viewprofilepage/user-id/5487"&gt;@angelborroy&lt;/A&gt;&amp;nbsp;is there a CVE description with details about version &amp;amp; general impact of this vulnerability?&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Mon, 21 Nov 2022 15:39:54 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/memory-leak-as-denial-of-service-attack/m-p/123474#M33793</guid>
      <dc:creator>Coin</dc:creator>
      <dc:date>2022-11-21T15:39:54Z</dc:date>
    </item>
    <item>
      <title>Re: Memory Leak as Denial of service attack</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/memory-leak-as-denial-of-service-attack/m-p/123475#M33794</link>
      <description>&lt;P&gt;I'm not able to find that Technical Bulletin, not sure if that was published / distributed by error.&lt;/P&gt;</description>
      <pubDate>Mon, 21 Nov 2022 16:05:00 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/memory-leak-as-denial-of-service-attack/m-p/123475#M33794</guid>
      <dc:creator>angelborroy</dc:creator>
      <dc:date>2022-11-21T16:05:00Z</dc:date>
    </item>
    <item>
      <title>Re: Memory Leak as Denial of service attack</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/memory-leak-as-denial-of-service-attack/m-p/123476#M33795</link>
      <description>&lt;P&gt;Hello, Angel:&lt;/P&gt;&lt;P&gt;thank you for your answer. Can you verify this point with the development team? If this security issue also happens on Community edition, a patch is needed (in orther to set the maximum memory an script can manage).&amp;nbsp; There are several customers in the world that use Alfresco Community in production environment.....&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;&lt;P&gt;Best regards.&lt;/P&gt;</description>
      <pubDate>Tue, 22 Nov 2022 14:00:29 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/memory-leak-as-denial-of-service-attack/m-p/123476#M33795</guid>
      <dc:creator>jjrabadan</dc:creator>
      <dc:date>2022-11-22T14:00:29Z</dc:date>
    </item>
    <item>
      <title>Re: Memory Leak as Denial of service attack</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/memory-leak-as-denial-of-service-attack/m-p/123477#M33796</link>
      <description>&lt;P&gt;Server side JavaScript code in Alfresco Repository is allowed, but this is mainly restricted to administrator users. The product can be limited / restricted in features in order to protect yourself from your administrators... but does this make sense?&lt;/P&gt;</description>
      <pubDate>Tue, 22 Nov 2022 14:26:56 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/memory-leak-as-denial-of-service-attack/m-p/123477#M33796</guid>
      <dc:creator>angelborroy</dc:creator>
      <dc:date>2022-11-22T14:26:56Z</dc:date>
    </item>
  </channel>
</rss>

