Description
A denial-of-service vulnerability was identified in Moodle’s TeX formula editor. When rendering TeX content using mimetex, insufficient execution time limits could allow specially crafted formulas to consume excessive server resources. An authenticated user could abuse this behavior to degrade performance or cause service interruption.
Remediation
References
Related Vulnerabilities
Lighttpd Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2008-1270)
WordPress Plugin WP Photo Album Plus Cross-Site Request Forgery (4.8.11)
WordPress Plugin SP Project & Document Manager Arbitrary File Upload (4.21)
Moodle Improper Input Validation Vulnerability (CVE-2009-1171)