CVE-2026-67437

HIGH

OliveTin: Unauthenticated DoS via OAuth2 State Memory Exhaustion (Unbounded Map Growth)

Title source: cna
STIX 2.1

Description

OliveTin gives access to predefined shell commands from a web interface. From 3000.0.0 until 3000.17.0, the service/internal/auth/otoauth2/restapi_auth_oauth2.go OAuth2 login handler stores per-login state in the registeredStates map on every /oauth/login request without expiring, deleting, or bounding entries, allowing an unauthenticated attacker to exhaust memory and cause a denial of service. This issue is fixed in version 3000.17.0.

Scores

CVSS v3 7.5
EPSS 0.0035
EPSS Percentile 28.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-400 CWE-401 CWE-770
Status published
Products (2)
OliveTin/OliveTin 0.0.0-20251024001301-45f9c18bc3ee - 0.0.0-20260708075951-ec114e95d297Go
OliveTin/OliveTin >= 3000.0.0, < 3000.17.0
Published Jul 29, 2026
Tracked Since Jul 30, 2026