vulnerability
SUSE: CVE-2021-28165: SUSE Linux Security Advisory
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 8 | (AV:N/AC:L/Au:N/C:N/I:N/A:C) | Apr 1, 2021 | Jun 19, 2021 | Oct 26, 2022 |
Severity
8
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:C)
Published
Apr 1, 2021
Added
Jun 19, 2021
Modified
Oct 26, 2022
Description
In Eclipse Jetty 7.2.2 to 9.4.38, 10.0.0.alpha0 to 10.0.1, and 11.0.0.alpha0 to 11.0.1, CPU usage can reach 100% upon receiving a large invalid TLS frame.
Solutions
suse-upgrade-jetty-annotationssuse-upgrade-jetty-clientsuse-upgrade-jetty-continuationsuse-upgrade-jetty-httpsuse-upgrade-jetty-iosuse-upgrade-jetty-jaassuse-upgrade-jetty-javax-websocket-client-implsuse-upgrade-jetty-javax-websocket-server-implsuse-upgrade-jetty-jmxsuse-upgrade-jetty-jndisuse-upgrade-jetty-jspsuse-upgrade-jetty-minimal-javadocsuse-upgrade-jetty-openidsuse-upgrade-jetty-plussuse-upgrade-jetty-proxysuse-upgrade-jetty-securitysuse-upgrade-jetty-serversuse-upgrade-jetty-servletsuse-upgrade-jetty-utilsuse-upgrade-jetty-util-ajaxsuse-upgrade-jetty-webappsuse-upgrade-jetty-websocket-apisuse-upgrade-jetty-websocket-clientsuse-upgrade-jetty-websocket-commonsuse-upgrade-jetty-websocket-javadocsuse-upgrade-jetty-websocket-serversuse-upgrade-jetty-websocket-servletsuse-upgrade-jetty-xml
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.