CVE Database
/

CVE-2021-3690

Back to search

CVE-2021-3690

Published: Aug 23, 2022

Modified: Aug 3, 2024

PUBLISHED

Description

A flaw was found in Undertow. A buffer leak on the incoming WebSocket PONG message may lead to memory exhaustion. This flaw allows an attacker to cause a denial of service. The highest threat from this vulnerability is availability.

VendorProductVersions

n/a

undertow

affected
Fixed in 2.2.10.Final, 2.0.40.Final

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now