Описание
Jetty PushSessionCacheFilter can be exploited by unauthenticated users to launch remote DoS attacks by exhausting the server’s memory.
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-apps/xenial | needs-triage | |
esm-infra-legacy/trusty | needs-triage | |
esm-infra/focal | DNE | |
focal | DNE | |
jammy | DNE | |
noble | DNE | |
oracular | DNE | |
plucky | DNE | |
upstream | needs-triage |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | 9.4.57-1 |
esm-apps/bionic | needed | |
esm-apps/focal | needed | |
esm-apps/jammy | needed | |
esm-apps/noble | not-affected | 9.4.53-1 |
esm-apps/xenial | needed | |
focal | ignored | end of standard support, was needs-triage |
jammy | needed | |
noble | not-affected | 9.4.53-1 |
oracular | not-affected | 9.4.55-1 |
Показывать по
Ссылки на источники
EPSS
3.1 Low
CVSS3
Связанные уязвимости
Jetty PushSessionCacheFilter can be exploited by unauthenticated users to launch remote DoS attacks by exhausting the server’s memory.
Jetty PushSessionCacheFilter can be exploited by unauthenticated users to launch remote DoS attacks by exhausting the server’s memory.
Jetty PushSessionCacheFilter can be exploited by unauthenticated users ...
Eclipse Jetty's PushSessionCacheFilter can cause remote DoS attacks
Уязвимость контейнера сервлетов Eclipse Jetty, связанная с некорректной зачисткой или освобождением ресурсов, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
3.1 Low
CVSS3