296,733
Total vulnerabilities in the database
A flaw was found in Undertow that tripped the client-side invocation timeout with certain calls made over HTTP2. This flaw allows an attacker to carry out denial of service attacks.
| Software | From | Fixed in |
|---|---|---|
| redhat / jboss_enterprise_application_platform | 7.3 | 7.3.x |
| redhat / jboss_enterprise_application_platform | 7.4 | 7.4.x |
| redhat / undertow | - | 2.2.15 |
| redhat / single_sign-on | 7.5.1 | 7.5.1.x |
| redhat / single_sign-on | 7.4.10 | 7.4.10.x |
io.undertow / undertow-core
|
- | 2.2.15 |