Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2021-41973

Опубликовано: 01 нояб. 2021
Источник: redhat
CVSS3: 6.5

Описание

In Apache MINA, a specifically crafted, malformed HTTP request may cause the HTTP Header decoder to loop indefinitely. The decoder assumed that the HTTP Header begins at the beginning of the buffer and loops if there is more data than expected. Please update MINA to 2.1.5 or greater.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat BPM Suite 6mina-coreOut of support scope
Red Hat Fuse 7mina-coreNot affected
Red Hat Integration Camel K 1mina-coreNot affected
Red Hat Integration Camel Quarkus 1mina-coreNot affected
Red Hat JBoss A-MQ 6mina-coreOut of support scope
Red Hat JBoss BRMS 5mina-coreOut of support scope
Red Hat JBoss BRMS 6mina-coreOut of support scope
Red Hat JBoss Data Virtualization 6mina-coreOut of support scope
Red Hat JBoss Enterprise Application Platform 6mina-coreOut of support scope
Red Hat JBoss Fuse 6mina-coreOut of support scope

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-835
https://bugzilla.redhat.com/show_bug.cgi?id=2027176mina-core: infinite loop may lead to DoS

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 4 лет назад

In Apache MINA, a specifically crafted, malformed HTTP request may cause the HTTP Header decoder to loop indefinitely. The decoder assumed that the HTTP Header begins at the beginning of the buffer and loops if there is more data than expected. Please update MINA to 2.1.5 or greater.

CVSS3: 6.5
nvd
больше 4 лет назад

In Apache MINA, a specifically crafted, malformed HTTP request may cause the HTTP Header decoder to loop indefinitely. The decoder assumed that the HTTP Header begins at the beginning of the buffer and loops if there is more data than expected. Please update MINA to 2.1.5 or greater.

CVSS3: 6.5
debian
больше 4 лет назад

In Apache MINA, a specifically crafted, malformed HTTP request may cau ...

CVSS3: 6.5
github
больше 4 лет назад

Infinite loop in Apache MINA

6.5 Medium

CVSS3