Lucene search

K
osvGoogleOSV:GHSA-G4CP-H53P-V3V8
HistoryApr 30, 2021 - 5:28 p.m.

Allocation of Resources Without Limits or Throttling in Undertow

2021-04-3017:28:42
Google
osv.dev
18
undertow
resource allocation
denial of service

EPSS

0.001

Percentile

40.9%

A flaw was discovered in Undertow in versions before Undertow 2.1.1.Final where certain requests to the “Expect: 100-continue” header may cause an out of memory error. This flaw may potentially lead to a denial of service.