Skip to main content

Vendor/product archive

redhat / openshift_application_runtimes CVEs

Beta · best-effort

33 CVEs tagged to redhat / openshift_application_runtimes3 Critical, 14 High, 14 Medium, 2 Low, 0 Unrated.

CVE-2022-1259

Published Aug 31, 2022

A flaw was found in Undertow. A potential security issue in flow control handling by the browser over HTTP/2 may cause overhead or a denial of service in the server. This flaw exi…

CVSS 7.5 · High

CVE-2021-4178

Published Aug 24, 2022

A arbitrary code execution flaw was found in the Fabric 8 Kubernetes client affecting versions 5.0.0-beta-1 and above. Due to an improperly configured YAML parsing, this will allo…

CVSS 6.7 · Medium

CVE-2021-3690

Published Aug 23, 2022

A flaw was found in Undertow. A buffer leak on the incoming WebSocket PONG message may lead to memory exhaustion. This flaw allows an attacker to cause a denial of service. The hi…

CVSS 7.5 · High

CVE-2021-3597

Published May 24, 2022

A flaw was found in undertow. The HTTP2SourceChannel fails to write the final frame under some circumstances, resulting in a denial of service. The highest threat from this vulner…

CVSS 5.9 · Medium

CVE-2020-25689

Published Nov 2, 2020

A memory leak flaw was found in WildFly in all versions up to 21.0.0.Final, where host-controller tries to reconnect in a loop, generating new connections which are not properly c…

CVSS 5.3 · Medium

CVE-2020-25644

Published Oct 6, 2020

A memory leak flaw was found in WildFly OpenSSL in versions prior to 1.1.3.Final, where it removes an HTTP session. It may allow the attacker to cause OOM leading to a denial of s…

CVSS 7.5 · High

CVE-2020-10719

Published May 26, 2020

A flaw was found in Undertow in versions before 2.1.1.Final, regarding the processing of invalid HTTP requests with large chunk sizes. This flaw allows an attacker to take advanta…

CVSS 6.5 · Medium
Showing 1-25 of 33 CVEsPage 1 of 2