CVE Database
/

CVE-2024-8391

Back to search

CVE-2024-8391

Published: Sep 4, 2024

Modified: Sep 4, 2024

PUBLISHED

Description

In Eclipse Vert.x version 4.3.0 to 4.5.9, the gRPC server does not limit the maximum length of message payload (Maven GAV: io.vertx:vertx-grpc-server and io.vertx:vertx-grpc-client).  This is fixed in the 4.5.10 version.  Note this does not affect the Vert.x gRPC server based grpc-java and Netty libraries (Maven GAV: io.vertx:vertx-grpc)

VendorProductVersions

Eclipse Foundation

Eclipse Vert.x

affected
4.3.0 - < 4.5.10

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now