CVE Vulnerabilities

CVE-2014-0193

Published: May 06, 2014 | Modified: Feb 13, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

WebSocket08FrameDecoder in Netty 3.6.x before 3.6.9, 3.7.x before 3.7.1, 3.8.x before 3.8.2, 3.9.x before 3.9.1, and 4.0.x before 4.0.19 allows remote attackers to cause a denial of service (memory consumption) via a TextWebSocketFrame followed by a long stream of ContinuationWebSocketFrames.

Affected Software

Name Vendor Start Version End Version
Netty Netty 3.6.0 (including) 3.6.0 (including)
Netty Netty 3.6.1 (including) 3.6.1 (including)
Netty Netty 3.6.2 (including) 3.6.2 (including)
Netty Netty 3.6.3 (including) 3.6.3 (including)
Netty Netty 3.6.4 (including) 3.6.4 (including)
Netty Netty 3.6.5 (including) 3.6.5 (including)
Netty Netty 3.6.6 (including) 3.6.6 (including)
Netty Netty 3.6.7 (including) 3.6.7 (including)
Netty Netty 3.6.8 (including) 3.6.8 (including)
Netty Netty 3.7.0 (including) 3.7.0 (including)
Netty Netty 3.8.0 (including) 3.8.0 (including)
Netty Netty 3.8.1 (including) 3.8.1 (including)
Netty Netty 3.9.0 (including) 3.9.0 (including)
Netty Netty 4.0.0 (including) 4.0.0 (including)
Netty Netty 4.0.1 (including) 4.0.1 (including)
Netty Netty 4.0.2 (including) 4.0.2 (including)
Netty Netty 4.0.3 (including) 4.0.3 (including)
Netty Netty 4.0.4 (including) 4.0.4 (including)
Netty Netty 4.0.5 (including) 4.0.5 (including)
Netty Netty 4.0.6 (including) 4.0.6 (including)
Netty Netty 4.0.7 (including) 4.0.7 (including)
Netty Netty 4.0.8 (including) 4.0.8 (including)
Netty Netty 4.0.9 (including) 4.0.9 (including)
Netty Netty 4.0.10 (including) 4.0.10 (including)
Netty Netty 4.0.11 (including) 4.0.11 (including)
Netty Netty 4.0.12 (including) 4.0.12 (including)
Netty Netty 4.0.13 (including) 4.0.13 (including)
Netty Netty 4.0.14 (including) 4.0.14 (including)
Netty Netty 4.0.15 (including) 4.0.15 (including)
Netty Netty 4.0.16 (including) 4.0.16 (including)
Netty Netty 4.0.17 (including) 4.0.17 (including)
Netty Netty 4.0.18 (including) 4.0.18 (including)

References