Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-14326

Опубликовано: 02 июн. 2021
Источник: debian
EPSS Низкий

Описание

A vulnerability was found in RESTEasy, where RootNode incorrectly caches routes. This issue results in hash flooding, leading to slower requests with higher CPU time spent searching and adding the entry. This flaw allows an attacker to cause a denial of service.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
resteasynot-affectedpackage
resteasy3.0not-affectedpackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=1855826

  • https://issues.redhat.com/browse/RESTEASY-2643

  • https://issues.redhat.com/browse/RESTEASY-2646

  • Introduced by: https://github.com/resteasy/Resteasy/commit/f948c45f4ebe00531f858e289d17664bc2edd496 (4.2.0.Final)

EPSS

Процентиль: 66%
0.01222
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 5 лет назад

A vulnerability was found in RESTEasy, where RootNode incorrectly caches routes. This issue results in hash flooding, leading to slower requests with higher CPU time spent searching and adding the entry. This flaw allows an attacker to cause a denial of service.

CVSS3: 7.5
redhat
около 6 лет назад

A vulnerability was found in RESTEasy, where RootNode incorrectly caches routes. This issue results in hash flooding, leading to slower requests with higher CPU time spent searching and adding the entry. This flaw allows an attacker to cause a denial of service.

CVSS3: 7.5
nvd
около 5 лет назад

A vulnerability was found in RESTEasy, where RootNode incorrectly caches routes. This issue results in hash flooding, leading to slower requests with higher CPU time spent searching and adding the entry. This flaw allows an attacker to cause a denial of service.

CVSS3: 7.5
github
больше 4 лет назад

RESTEasy 4.5.5.Final in hash flooding

EPSS

Процентиль: 66%
0.01222
Низкий