You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Netty is an asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers & clients. An unsafe reading of environment file could potentially cause a denial of service in Netty. When loaded on an Windows application, Netty attempts to load a file that does not exist. If an attacker creates such a large file, the Netty application crashes. This vulnerability is fixed in 4.1.115.
netty: Denial of Service attack on windows app using Netty
https://avd.aquasec.com/nvd/cve-2024-47535
Projects:
Locations:
io.netty:netty-common:4.1.114.Final (agent/agent.jar)
io.netty:netty-common:4.1.114.Final (app/libs/netty-common-4.1.114.Final.jar)
References:
The text was updated successfully, but these errors were encountered: