CVE-2017-2670
Dashboard / Vulnerabilities / CVE-2017-2670
Summary:
Details: It was found in Undertow before 1.3.28 that with non-clean TCP close, the Websocket server gets into infinite loop on every IO thread, effectively causing DoS.
References: http://rhn.redhat.com/errata/RHSA-2017-1409.html, http://www.securityfocus.com/bid/98965, https://access.redhat.com/errata/RHSA-2017:1410, https://access.redhat.com/errata/RHSA-2017:1411, https://access.redhat.com/errata/RHSA-2017:1412, https://access.redhat.com/errata/RHSA-2017:3454, https://access.redhat.com/errata/RHSA-2017:3455, https://access.redhat.com/errata/RHSA-2017:3456, https://access.redhat.com/errata/RHSA-2017:3458, https://www.debian.org/security/2017/dsa-3906, https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-2670
Affected packages
Package
Name:
Purl:
