Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-11612

Опубликовано: 07 апр. 2020
Источник: debian
EPSS Низкий

Описание

The ZlibDecoders in Netty 4.1.x before 4.1.46 allow for unbounded memory allocation while decoding a ZlibEncoded byte stream. An attacker could send a large ZlibEncoded byte stream to the Netty server, forcing the server to allocate all of its free memory to a single decoder.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
nettyfixed1:4.1.48-1package
nettyignoredjessiepackage

Примечания

  • https://github.com/netty/netty/issues/6168

  • https://github.com/netty/netty/pull/9924

  • https://github.com/netty/netty/commit/1543218d3e7afcb33a90b728b14370395a3deca0

EPSS

Процентиль: 84%
0.02048
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 6 лет назад

The ZlibDecoders in Netty 4.1.x before 4.1.46 allow for unbounded memory allocation while decoding a ZlibEncoded byte stream. An attacker could send a large ZlibEncoded byte stream to the Netty server, forcing the server to allocate all of its free memory to a single decoder.

CVSS3: 7.5
redhat
около 6 лет назад

The ZlibDecoders in Netty 4.1.x before 4.1.46 allow for unbounded memory allocation while decoding a ZlibEncoded byte stream. An attacker could send a large ZlibEncoded byte stream to the Netty server, forcing the server to allocate all of its free memory to a single decoder.

CVSS3: 7.5
nvd
почти 6 лет назад

The ZlibDecoders in Netty 4.1.x before 4.1.46 allow for unbounded memory allocation while decoding a ZlibEncoded byte stream. An attacker could send a large ZlibEncoded byte stream to the Netty server, forcing the server to allocate all of its free memory to a single decoder.

CVSS3: 7.5
github
больше 5 лет назад

Denial of Service in Netty

CVSS3: 9.8
fstec
больше 5 лет назад

Уязвимость реализации класса ZlibDecoders сетевого программного средства Netty, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 84%
0.02048
Низкий