Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-14326

Опубликовано: 02 июн. 2021
Источник: debian
EPSS Низкий

Описание

A vulnerability was found in RESTEasy, where RootNode incorrectly caches routes. This issue results in hash flooding, leading to slower requests with higher CPU time spent searching and adding the entry. This flaw allows an attacker to cause a denial of service.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
resteasynot-affectedpackage
resteasy3.0not-affectedpackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=1855826

  • https://issues.redhat.com/browse/RESTEASY-2643

  • https://issues.redhat.com/browse/RESTEASY-2646

  • Introduced by: https://github.com/resteasy/Resteasy/commit/f948c45f4ebe00531f858e289d17664bc2edd496 (4.2.0.Final)

EPSS

Процентиль: 65%
0.00499
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 4 лет назад

A vulnerability was found in RESTEasy, where RootNode incorrectly caches routes. This issue results in hash flooding, leading to slower requests with higher CPU time spent searching and adding the entry. This flaw allows an attacker to cause a denial of service.

CVSS3: 7.5
redhat
больше 5 лет назад

A vulnerability was found in RESTEasy, where RootNode incorrectly caches routes. This issue results in hash flooding, leading to slower requests with higher CPU time spent searching and adding the entry. This flaw allows an attacker to cause a denial of service.

CVSS3: 7.5
nvd
больше 4 лет назад

A vulnerability was found in RESTEasy, where RootNode incorrectly caches routes. This issue results in hash flooding, leading to slower requests with higher CPU time spent searching and adding the entry. This flaw allows an attacker to cause a denial of service.

CVSS3: 7.5
github
почти 4 года назад

RESTEasy 4.5.5.Final in hash flooding

EPSS

Процентиль: 65%
0.00499
Низкий