5.9
CVE-2020-14340
- EPSS 2.22%
- Veröffentlicht 02.06.2021 13:15:08
- Zuletzt bearbeitet 21.11.2024 05:03:02
- Erkennungen
A vulnerability was discovered in XNIO where file descriptor leak caused by growing amounts of NIO Selector file handles between garbage collection cycles. It may allow the attacker to cause a denial of service. It affects XNIO versions 3.6.0.Beta1 through 3.8.1.Final.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Redhat ≫ Jboss Brms Version 5
Redhat ≫ Jboss Brms Version 6
Redhat ≫ Jboss Data Grid Version 6.0.0
Redhat ≫ Jboss Data Grid Version 7.0.0
Redhat ≫ Jboss Data Virtualization Version 6.0.0 Update -
Redhat ≫ Jboss Enterprise Application Platform Version 5.0.0
Redhat ≫ Jboss Enterprise Application Platform Version 6.0.0
Redhat ≫ Jboss Fuse Version 6.0.0
Redhat ≫ Jboss Fuse Version 7.0.0
Redhat ≫ Jboss Operations Network Version 3.0
Redhat ≫ Jboss Soa Platform Version 5
Oracle ≫ Communications Cloud Native Core Console Version 1.9.0
Oracle ≫ Communications Cloud Native Core Network Repository Function Version 1.14.0
Oracle ≫ Communications Cloud Native Core Policy Version 1.14.0
Oracle ≫ Communications Cloud Native Core Security Edge Protection Proxy Version 1.15.0
Oracle ≫ Communications Cloud Native Core Service Communication Proxy Version 1.14.0
Oracle ≫ Communications Cloud Native Core Unified Data Repository Version 1.14.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.22% | 0.804 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5.9 | 2.2 | 3.6 |
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
|
| NIST | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:N/A:P
|
CWE-400 Uncontrolled Resource Consumption
The product does not properly control the allocation and maintenance of a limited resource.
https://www.oracle.com/security-alerts/cpuapr2022.html
https://www.oracle.com/security-alerts/cpujan2022.html
https://bugzilla.redhat.com/show_bug.cgi?id=1860218