Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-7708

Опубликовано: 14 июл. 2026
Источник: debian

Описание

For requests that have a body, but reading the body may end up in reading 0 bytes, there is a buffer leak. This is particularly the case for 100-Continue, but any request where the network is slow can leak.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
jetty12undeterminedpackage
jetty9undeterminedpackage

Примечания

  • https://github.com/jetty/jetty.project/security/advisories/GHSA-9299-c6m4-mjhc

  • https://github.com/jetty/jetty.project/pull/12156

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 2 месяцев назад

For requests that have a body, but reading the body may end up in reading 0 bytes, there is a buffer leak. This is particularly the case for 100-Continue, but any request where the network is slow can leak.

CVSS3: 7.5
redhat
около 2 месяцев назад

For requests that have a body, but reading the body may end up in reading 0 bytes, there is a buffer leak. This is particularly the case for 100-Continue, but any request where the network is slow can leak.

CVSS3: 7.5
nvd
около 2 месяцев назад

For requests that have a body, but reading the body may end up in reading 0 bytes, there is a buffer leak. This is particularly the case for 100-Continue, but any request where the network is slow can leak.

CVSS3: 7.5
github
около 1 месяца назад

Eclipse Jetty: DoS attack triggering OutOfMemory with 100-Continue requests