Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-2764

Опубликовано: 11 авг. 2022
Источник: redhat
CVSS3: 4.2
EPSS Низкий

Описание

A flaw was found in Undertow. Denial of service can be achieved as Undertow server waits for the LAST_CHUNK forever for EJB invocations.

A flaw was found in Undertow with EJB invocations. This flaw allows an attacker to generate a valid HTTP request and send it to the server on an established connection after removing the LAST_CHUNK from the bytes, causing a denial of service.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat build of QuarkusundertowNot affected
Red Hat build of Quarkusquarkus-httpNot affected
Red Hat Data Grid 8undertowFix deferred
Red Hat Decision Manager 7undertowNot affected
Red Hat Fuse 7undertowFix deferred
Red Hat Integration Camel K 1undertowFix deferred
Red Hat Integration Camel Quarkus 1undertowFix deferred
Red Hat Integration Service RegistryundertowNot affected
Red Hat JBoss Data Grid 7undertowOut of support scope
Red Hat JBoss Fuse 6undertowOut of support scope

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=2117506Undertow: DoS can be achieved as Undertow server waits for the LAST_CHUNK forever for EJB invocations

EPSS

Процентиль: 31%
0.00118
Низкий

4.2 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.9
ubuntu
больше 3 лет назад

A flaw was found in Undertow. Denial of service can be achieved as Undertow server waits for the LAST_CHUNK forever for EJB invocations.

CVSS3: 4.9
nvd
больше 3 лет назад

A flaw was found in Undertow. Denial of service can be achieved as Undertow server waits for the LAST_CHUNK forever for EJB invocations.

CVSS3: 4.9
debian
больше 3 лет назад

A flaw was found in Undertow. Denial of service can be achieved as Und ...

CVSS3: 4.9
github
больше 3 лет назад

A flaw was found in Undertow. Denial of service can be achieved as Undertow server waits for the LAST_CHUNK forever for EJB invocations.

EPSS

Процентиль: 31%
0.00118
Низкий

4.2 Medium

CVSS3