Description
An issue was discovered in MediaWiki through 1.36.2. A parser function related to loop control allowed for an infinite loop (and php-fpm hang) within the Loops extension because egLoopsCountLimit is mishandled. This could lead to memory exhaustion.
Remediation
References
Related Vulnerabilities
Coppermine Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2008-7187)
Jboss EAP Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2019-9511)
MediaWiki Other Vulnerability (CVE-2005-0536)
WordPress Plugin PowerPack Lite for Beaver Builder Local File Inclusion (1.3.0.3)