imPC@ndo IT

Tracker / CVE-2016-4970

CVE-2016-4970

High 7.5

handler/ssl/OpenSslEngine.java in Netty 4.0.x before 4.0.37.Final and 4.1.x before 4.1.1.Final allows remote attackers to cause a denial of service (infinite loop).

Affected products and versions

apache cassandra
netty netty · 4.0.20 → 4.0.37
netty netty · 4.1.0 → 4.1.1
redhat jboss_data_grid
redhat jboss_middleware_text-only_advisories

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References