Description
A flaw was found in Undertow. A buffer leak on the incoming WebSocket PONG message may lead to memory exhaustion. This flaw allows an attacker to cause a denial of service. The highest threat from this vulnerability is availability.
Remediation
References
Related Vulnerabilities
UAParser.js Other Vulnerability (CVE-2020-7793)
Undertow Loop with Unreachable Exit Condition ('Infinite Loop') Vulnerability (CVE-2023-1108)
Drupal Other Vulnerability (CVE-2006-2742)
MediaWiki Session Fixation Vulnerability (CVE-2013-4572)
WordPress Plugin Spam protection, AntiSpam, FireWall by CleanTalk Cross-Site Scripting (5.127.3)