A vulnerability was found in Undertow. This vulnerability impacts a server that supports the wildfly-http-client protocol. Whenever a malicious user opens and closes a connection with the HTTP port o…
High CVSS 7.5
Summary
A vulnerability was found in Undertow. This vulnerability impacts a server that supports the wildfly-http-client protocol. Whenever a malicious user opens and closes a connection with the HTTP port of the server and then closes the connection immediately, the server will end with both memory and open file limits exhausted at some point, depending on the amount of memory available. At HTTP upgrade to remoting, the WriteTimeoutStreamSinkConduit leaks connections if RemotingConnection is close…
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
- :
Sources
- NVD DATABASE
Original Links
- https://access.redhat.com/errata/RHSA-2024:1674 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2024:1675 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2024:1676 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2024:1677 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2024:1860 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2024:1861 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2024:1862 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2024:1864 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2024:1866 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2024:3354 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2024:4884 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:4226 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2025:9583
- https://access.redhat.com/security/cve/CVE-2024-1635 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2264928 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2024:1674 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2024:1675 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2024:1676 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2024:1677 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2024:1860 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2024:1861 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2024:1862 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2024:1864 Third Party Advisory
- https://access.redhat.com/errata/RHSA-2024:1866 Third Party Advisory
- https://access.redhat.com/security/cve/CVE-2024-1635 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2264928 Third Party Advisory
- https://security.netapp.com/advisory/ntap-20240322-0007/ Vendor Advisory
Timeline
- nvd_ingest NVD