Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-4132

Опубликовано: 23 нояб. 2022
Источник: redhat
CVSS3: 5.9
EPSS Низкий

Описание

A flaw was found in JSS. A memory leak in JSS requires non-standard configuration but is a low-effort DoS vector if configured that way (repeatedly hitting the login page).

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6jssOut of support scope
Red Hat Enterprise Linux 6tomcatjssOut of support scope
Red Hat Enterprise Linux 7jssFix deferred
Red Hat Enterprise Linux 7tomcatFix deferred
Red Hat Enterprise Linux 8jssNot affected
Red Hat Enterprise Linux 8pki-deps:10.6/pki-servlet-engineFix deferred
Red Hat Enterprise Linux 9jssNot affected
Red Hat Enterprise Linux 9pki-servlet-engineFix deferred
Red Hat JBoss Web Server 3tomcat7Out of support scope
Red Hat JBoss Web Server 3tomcat8Out of support scope

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-401
https://bugzilla.redhat.com/show_bug.cgi?id=2147372jss: Memory leak on TLS connections

EPSS

Процентиль: 21%
0.00066
Низкий

5.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.9
ubuntu
около 2 лет назад

A flaw was found in JSS. A memory leak in JSS requires non-standard configuration but is a low-effort DoS vector if configured that way (repeatedly hitting the login page).

CVSS3: 5.9
nvd
около 2 лет назад

A flaw was found in JSS. A memory leak in JSS requires non-standard configuration but is a low-effort DoS vector if configured that way (repeatedly hitting the login page).

CVSS3: 5.9
debian
около 2 лет назад

A flaw was found in JSS. A memory leak in JSS requires non-standard co ...

CVSS3: 5.9
redos
15 дней назад

Уязвимость jss

CVSS3: 5.9
github
около 2 лет назад

A flaw was found in JSS. A memory leak in JSS requires non-standard configuration but is a low-effort DoS vector if configured that way (repeatedly hitting the login page).

EPSS

Процентиль: 21%
0.00066
Низкий

5.9 Medium

CVSS3