VYPR
Critical severity9.8NVD Advisory· Published Mar 12, 2024· Updated Jun 17, 2026

CVE-2023-41313

CVE-2023-41313

Description

The authentication method in Apache Doris versions before 2.0.0 was vulnerable to timing attacks. Users are recommended to upgrade to version 2.0.0 + or 1.2.8, which fixes this issue.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Apache/Dorisllm-fuzzy2 versions
    <2.0.0, 1.2.8+ 1 more
    • (no CPE)range: <2.0.0, 1.2.8
    • cpe:2.3:a:apache:doris:*:*:*:*:*:*:*:*range: <1.2.8
  • Apache Software Foundation/Apache Dorisv5
    Range: 0

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.