CVE-2020-14340

A vulnerability was discovered in XNIO where file descriptor leak caused by growing amounts of NIO Selector file handles between garbage collection cycles. It may allow the attacker to cause a denial of service. It affects XNIO versions 3.6.0.Beta1 through 3.8.1.Final.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:redhat:xnio:*:*:*:*:*:*:*:*
cpe:2.3:a:redhat:xnio:*:*:*:*:*:*:*:*
cpe:2.3:a:redhat:xnio:3.6.0:beta1:*:*:*:*:*:*
cpe:2.3:a:redhat:xnio:3.6.0:beta2:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:redhat:jboss_brms:5:*:*:*:*:*:*:*
cpe:2.3:a:redhat:jboss_brms:6:*:*:*:*:*:*:*
cpe:2.3:a:redhat:jboss_data_grid:6.0.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:jboss_data_grid:7.0.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:jboss_data_virtualization:6.0.0:-:*:*:*:*:*:*
cpe:2.3:a:redhat:jboss_enterprise_application_platform:5.0.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:jboss_enterprise_application_platform:6.0.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:jboss_fuse:6.0.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:jboss_fuse:7.0.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:jboss_operations_network:3.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:jboss_soa_platform:5:*:*:*:*:*:*:*

Configuration 3 (hide)

OR cpe:2.3:a:oracle:communications_cloud_native_core_console:1.9.0:*:*:*:*:*:*:*
cpe:2.3:a:oracle:communications_cloud_native_core_network_repository_function:1.14.0:*:*:*:*:*:*:*
cpe:2.3:a:oracle:communications_cloud_native_core_policy:1.14.0:*:*:*:*:*:*:*
cpe:2.3:a:oracle:communications_cloud_native_core_security_edge_protection_proxy:1.15.0:*:*:*:*:*:*:*
cpe:2.3:a:oracle:communications_cloud_native_core_service_communication_proxy:1.14.0:*:*:*:*:*:*:*
cpe:2.3:a:oracle:communications_cloud_native_core_unified_data_repository:1.14.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2021-06-02 13:15

Updated : 2024-02-28 18:28


NVD link : CVE-2020-14340

Mitre link : CVE-2020-14340

CVE.ORG link : CVE-2020-14340


JSON object : View

Products Affected

redhat

  • jboss_data_virtualization
  • xnio
  • jboss_brms
  • jboss_data_grid
  • jboss_operations_network
  • jboss_enterprise_application_platform
  • jboss_soa_platform
  • jboss_fuse

oracle

  • communications_cloud_native_core_network_repository_function
  • communications_cloud_native_core_security_edge_protection_proxy
  • communications_cloud_native_core_unified_data_repository
  • communications_cloud_native_core_policy
  • communications_cloud_native_core_service_communication_proxy
  • communications_cloud_native_core_console
CWE
NVD-CWE-Other CWE-400

Uncontrolled Resource Consumption