The Image module in Drupal 7.x before 7.20 allows remote attackers to cause a denial of service (CPU and disk space consumption) via a large number of new derivative requests.
Weaknesses in this category are related to improper management of system resources.
Link | Tags |
---|---|
http://www.openwall.com/lists/oss-security/2013/02/21/5 | mailing list |
http://drupal.org/SA-CORE-2013-002 | patch vendor advisory |