Netty is an asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers & clients. An unsafe reading of environment file could potentially cause a denial of service in Netty. When loaded on an Windows application, Netty attempts to load a file that does not exist. If an attacker creates such a large file, the Netty application crashes. This vulnerability is fixed in 4.1.115.
References
Configurations
No configuration.
History
13 Nov 2024, 17:01
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
12 Nov 2024, 16:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-11-12 16:15
Updated : 2024-11-13 17:01
NVD link : CVE-2024-47535
Mitre link : CVE-2024-47535
CVE.ORG link : CVE-2024-47535
JSON object : View
Products Affected
No product.
CWE
CWE-400
Uncontrolled Resource Consumption