#VU68951 Resource exhaustion in Splunk Enterprise - CVE-2022-43572
Published: November 2, 2022
Splunk Enterprise
Splunk Inc.
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to application does not properly control consumption of internal resources. A remote attacker can trigger resource exhaustion by sending a malformed file through the Splunk-to-Splunk (S2S) or HTTP Event Collector (HEC) protocols to an indexer.