Denial of Service: Digest authentication DoS vulnerability

ID

ruby.checkdigestdos

Severity

low

Remediation Complexity

medium

Remediation Risk

medium

Remediation Effort

low

Resource

Denial of Service

Language

Ruby

Description

This rule identifies instances where resources are allocated without any limits, potentially leading to Denial of Service (DoS) attacks.

Rationale

Checks for digest authentication DoS vulnerability

Remediation

Configuration

This detector does not need any configuration.

References

  • CWE-770 : Allocation of Resources Without Limits or Throttling.