A denial-of-service vulnerability caused by unbounded resource allocation was discovered in the audit logging functionality, due to a missing size limit on input recorded into audit entries. An unauthenticated attacker can submit requests containing excessively large input that is recorded into audit entries, possibly exhausting the available disk space and rendering the system inoperable.
References
| Link | Resource |
|---|---|
| https://security.nozominetworks.com/NN-2026:11-01 | Mitigation Vendor Advisory |
| https://cert-portal.siemens.com/productcert/html/ssa-827968.html |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2026-07-09 08:16
Updated : 2026-08-11 13:18
NVD link : CVE-2026-31984
Mitre link : CVE-2026-31984
CVE.ORG link : CVE-2026-31984
JSON object : View
Products Affected
nozominetworks
- cmc
- guardian
CWE
CWE-770
Allocation of Resources Without Limits or Throttling
