Description
A flaw was found in Undertow. A potential security issue in flow control handling by the browser over HTTP/2 may cause overhead or a denial of service in the server. This flaw exists because of an incomplete fix for CVE-2021-3629.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-24592 | A flaw was found in Undertow. A potential security issue in flow control handling by the browser over HTTP/2 may cause overhead or a denial of service in the server. This flaw exists because of an incomplete fix for CVE-2021-3629. |
References
History
Wed, 25 Jun 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat jboss Enterprise Application Platform Eus
|
|
| CPEs | cpe:/a:redhat:jboss_enterprise_application_platform_eus:7.1::el7 cpe:/a:redhat:jboss_enterprise_application_platform_eus:7.3::el7 |
|
| Vendors & Products |
Redhat jboss Enterprise Application Platform Eus
|
Subscriptions
Netapp
Subscribe
Active Iq Unified Manager
Subscribe
Cloud Secure Agent
Subscribe
Oncommand Insight
Subscribe
Oncommand Workflow Automation
Subscribe
Redhat
Subscribe
Build Of Quarkus
Subscribe
Integration Camel K
Subscribe
Jboss Enterprise Application Platform
Subscribe
Jboss Enterprise Application Platform Eus
Subscribe
Jboss Fuse
Subscribe
Openshift Application Runtimes
Subscribe
Single Sign-on
Subscribe
Undertow
Subscribe
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-02T23:55:24.711Z
Reserved: 2022-04-06T00:00:00.000Z
Link: CVE-2022-1259
No data.
Status : Modified
Published: 2022-08-31T16:15:09.230
Modified: 2024-11-21T06:40:21.637
Link: CVE-2022-1259
OpenCVE Enrichment
No data.
Weaknesses
EUVD