Description
It was found that URLResource.getLastModified() in Undertow closes the file descriptors only when they are finalized which can cause file descriptors to exhaust. This leads to a file handler leak.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-3969 | It was found that URLResource.getLastModified() in Undertow closes the file descriptors only when they are finalized which can cause file descriptors to exhaust. This leads to a file handler leak. |
Github GHSA |
GHSA-gjjx-gqm4-wcgm | Uncontrolled Resource Consumption in Undertow |
References
History
Fri, 23 Aug 2024 05:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:jboss_enterprise_application_platform:7.1::el7 |
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-05T03:51:48.638Z
Reserved: 2017-12-04T00:00:00.000Z
Link: CVE-2018-1114
No data.
Status : Modified
Published: 2018-09-11T15:29:00.470
Modified: 2024-11-21T03:59:12.630
Link: CVE-2018-1114
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA