Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2014-0193

WebSocket08FrameDecoder in Netty 3.6.x before 3.6.9, 3.7.x before 3.7.1, 3.8.x before 3.8.2, 3.9.x before 3.9.1, and 4.0.x before 4.0.19 allows remote attackers to cause a denial of service (memory consumption) via a TextWebSocketFrame followed by a long stream of ContinuationWebSocketFrames.

  • Published: May 6, 2014
  • Updated: Apr 13, 2023
  • CVE: CVE-2014-0193
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 5
  • AV:N/AC:L/Au:N/C:N/I:N/A:P

CWEs:

Software From Fixed in
netty / netty 4.0.16 4.0.16.x
netty / netty 4.0.17 4.0.17.x
netty / netty 4.0.18 4.0.18.x
netty / netty 3.6.1 3.6.1.x
netty / netty 3.6.2 3.6.2.x
netty / netty 3.6.3 3.6.3.x
netty / netty 3.6.4 3.6.4.x
netty / netty 3.6.5 3.6.5.x
netty / netty 3.6.6 3.6.6.x
netty / netty 3.6.7 3.6.7.x
netty / netty 3.6.8 3.6.8.x
netty / netty 3.7.0 3.7.0.x
netty / netty 3.8.0 3.8.0.x
netty / netty 3.8.1 3.8.1.x
netty / netty 3.9.0 3.9.0.x
netty / netty 3.6.0 3.6.0.x
netty / netty 4.0.1 4.0.1.x
netty / netty 4.0.2 4.0.2.x
netty / netty 4.0.3 4.0.3.x
netty / netty 4.0.4 4.0.4.x
netty / netty 4.0.5 4.0.5.x
netty / netty 4.0.6 4.0.6.x
netty / netty 4.0.7 4.0.7.x
netty / netty 4.0.8 4.0.8.x
netty / netty 4.0.9 4.0.9.x
netty / netty 4.0.10 4.0.10.x
netty / netty 4.0.11 4.0.11.x
netty / netty 4.0.12 4.0.12.x
netty / netty 4.0.13 4.0.13.x
netty / netty 4.0.15 4.0.15.x
netty / netty 4.0.0 4.0.0.x
netty / netty 4.0.14 4.0.14.x