Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-76fg-mhrg-fmmg

Опубликовано: 27 авг. 2022
Источник: github
Github: Прошло ревью
CVSS3: 7.5

Описание

XNIO notifyReadClosed method logging message to unexpected end

A flaw was found in XNIO, specifically in the notifyReadClosed method. The issue revealed this method was logging a message to another expected end. This flaw allows an attacker to send flawed requests to a server, possibly causing log contention-related performance concerns or an unwanted disk fill-up. A fix for this issue is available on the 3.x branch of the repository.

Пакеты

Наименование

org.jboss.xnio:xnio-all

maven
Затронутые версииВерсия исправления

<= 3.8.7.Final

Отсутствует

EPSS

Процентиль: 64%
0.00465
Низкий

7.5 High

CVSS3

Дефекты

CWE-770

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 3 лет назад

A flaw was found in XNIO, specifically in the notifyReadClosed method. The issue revealed this method was logging a message to another expected end. This flaw allows an attacker to send flawed requests to a server, possibly causing log contention-related performance concerns or an unwanted disk fill-up.

CVSS3: 7.5
redhat
почти 4 года назад

A flaw was found in XNIO, specifically in the notifyReadClosed method. The issue revealed this method was logging a message to another expected end. This flaw allows an attacker to send flawed requests to a server, possibly causing log contention-related performance concerns or an unwanted disk fill-up.

CVSS3: 7.5
nvd
больше 3 лет назад

A flaw was found in XNIO, specifically in the notifyReadClosed method. The issue revealed this method was logging a message to another expected end. This flaw allows an attacker to send flawed requests to a server, possibly causing log contention-related performance concerns or an unwanted disk fill-up.

CVSS3: 7.5
debian
больше 3 лет назад

A flaw was found in XNIO, specifically in the notifyReadClosed method. ...

EPSS

Процентиль: 64%
0.00465
Низкий

7.5 High

CVSS3

Дефекты

CWE-770