Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:20574
HistoryJun 21, 2019 - 5:42 a.m.

Denial Of Service (DoS)

2019-06-2105:42:50
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
17

EPSS

0.727

Percentile

98.1%

tomcat-coyote/tomcat-embed-core is vulnerable to denial of service. The vulnerability exists due to an incomplete fix of CVE-2019-0199 which is due to the lack of timeout idling streams and keeping the idle streams open without any read/write and request/response data.

References