CVE Database
/

CVE-2019-0231

Back to search

CVE-2019-0231

Published: Oct 1, 2019

Modified: Feb 13, 2025

PUBLISHED

Description

Handling of the close_notify SSL/TLS message does not lead to a connection closure, leading the server to retain the socket opened and to have the client potentially receive clear text messages afterward. Mitigation: 2.0.20 users should migrate to 2.0.21, 2.1.0 users should migrate to 2.1.1. This issue affects: Apache MINA.

VendorProductVersions

Apache Software Foundation

Apache MINA

affected
Apache MINA 2.1 2.1.0
affected
Apache MINA 2.0 2.0.21

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now