Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-0084

Опубликовано: 26 авг. 2022
Источник: debian
EPSS Низкий

Описание

A flaw was found in XNIO, specifically in the notifyReadClosed method. The issue revealed this method was logging a message to another expected end. This flaw allows an attacker to send flawed requests to a server, possibly causing log contention-related performance concerns or an unwanted disk fill-up.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
jboss-xniofixed3.8.7-2package
jboss-xniono-dsabullseyepackage
jboss-xniono-dsabusterpackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=2064226

  • Fixed by https://github.com/xnio/xnio/commit/b05531de0433f498af26f9aec6c0e944c3c1689c

EPSS

Процентиль: 64%
0.00465
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 3 лет назад

A flaw was found in XNIO, specifically in the notifyReadClosed method. The issue revealed this method was logging a message to another expected end. This flaw allows an attacker to send flawed requests to a server, possibly causing log contention-related performance concerns or an unwanted disk fill-up.

CVSS3: 7.5
redhat
почти 4 года назад

A flaw was found in XNIO, specifically in the notifyReadClosed method. The issue revealed this method was logging a message to another expected end. This flaw allows an attacker to send flawed requests to a server, possibly causing log contention-related performance concerns or an unwanted disk fill-up.

CVSS3: 7.5
nvd
больше 3 лет назад

A flaw was found in XNIO, specifically in the notifyReadClosed method. The issue revealed this method was logging a message to another expected end. This flaw allows an attacker to send flawed requests to a server, possibly causing log contention-related performance concerns or an unwanted disk fill-up.

CVSS3: 7.5
github
больше 3 лет назад

XNIO `notifyReadClosed` method logging message to unexpected end

EPSS

Процентиль: 64%
0.00465
Низкий