Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2020-27822

Опубликовано: 04 дек. 2020
Источник: redhat
CVSS3: 5.9

Описание

A flaw was found in Wildfly affecting versions 19.0.0.Final, 19.1.0.Final, 20.0.0.Final, 20.0.1.Final, and 21.0.0.Final. When an application uses the OpenTracing API's java-interceptors, there is a possibility of a memory leak. This flaw allows an attacker to impact the availability of the server. The highest threat from this vulnerability is to system availability.

A flaw was found in Wildfly. When an application uses the OpenTracing API's java-interceptors, there is a possibility of a memory leak. This flaw allows an attacker to impact the availability of the server. The highest threat from this vulnerability is to system availability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Data Grid 8wildflyNot affected
Red Hat Decision Manager 7wildflyNot affected
Red Hat Fuse 7wildflyNot affected
Red Hat JBoss Data Grid 7wildflyOut of support scope
Red Hat JBoss Data Virtualization 6jbossasOut of support scope
Red Hat JBoss Data Virtualization 6wildflyOut of support scope
Red Hat JBoss Enterprise Application Platform 5jbossasOut of support scope
Red Hat JBoss Enterprise Application Platform 6jbossasOut of support scope
Red Hat JBoss Fuse 6wildflyOut of support scope
Red Hat JBoss Operations Network 3wildflyOut of support scope

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-401
https://bugzilla.redhat.com/show_bug.cgi?id=1904060wildfly: Potential Memory leak in Wildfly when using OpenTracing

5.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.9
nvd
около 5 лет назад

A flaw was found in Wildfly affecting versions 19.0.0.Final, 19.1.0.Final, 20.0.0.Final, 20.0.1.Final, and 21.0.0.Final. When an application uses the OpenTracing API's java-interceptors, there is a possibility of a memory leak. This flaw allows an attacker to impact the availability of the server. The highest threat from this vulnerability is to system availability.

CVSS3: 5.9
debian
около 5 лет назад

A flaw was found in Wildfly affecting versions 19.0.0.Final, 19.1.0.Fi ...

CVSS3: 5.9
github
больше 3 лет назад

Wildfly has a memory leak vulnerability

5.9 Medium

CVSS3