Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-2670

Опубликовано: 27 июл. 2018
Источник: debian
EPSS Низкий

Описание

It was found in Undertow before 1.3.28 that with non-clean TCP close, the Websocket server gets into infinite loop on every IO thread, effectively causing DoS.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
undertowfixed1.4.18-1package

Примечания

  • Fixed by: https://github.com/undertow-io/undertow/commit/9bfe9fbbb595d51157b61693f072895f7dbadd1d

  • https://issues.jboss.org/browse/UNDERTOW-1035

EPSS

Процентиль: 89%
0.03662
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 8 лет назад

It was found in Undertow before 1.3.28 that with non-clean TCP close, the Websocket server gets into infinite loop on every IO thread, effectively causing DoS.

CVSS3: 7.5
redhat
около 9 лет назад

It was found in Undertow before 1.3.28 that with non-clean TCP close, the Websocket server gets into infinite loop on every IO thread, effectively causing DoS.

CVSS3: 7.5
nvd
около 8 лет назад

It was found in Undertow before 1.3.28 that with non-clean TCP close, the Websocket server gets into infinite loop on every IO thread, effectively causing DoS.

CVSS3: 7.5
github
почти 8 лет назад

Moderate severity vulnerability that affects io.undertow:undertow-core

EPSS

Процентиль: 89%
0.03662
Низкий