Netty

Netty-incubator-codec-ohttp

2 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.34%
  • Published 18.07.2024 23:15:02
  • Last modified 21.11.2024 09:31:25

The netty incubator codec.bhttp is a java language binary http parser. In affected versions the `BinaryHttpParser` class does not properly validate input values thus giving attackers almost complete control over the HTTP requests constructed from the...

Exploit
  • EPSS 0.3%
  • Published 04.06.2024 22:15:10
  • Last modified 21.11.2024 09:21:39

netty-incubator-codec-ohttp is the OHTTP implementation for netty. BoringSSLAEADContext keeps track of how many OHTTP responses have been sent and uses this sequence number to calculate the appropriate nonce to use with the encryption algorithm. Unf...