Tracker / CVE-2021-42340
CVE-2021-42340
Alta 7.5
The fix for bug 63362 present in Apache Tomcat 10.1.0-M1 to 10.1.0-M5, 10.0.0-M1 to 10.0.11, 9.0.40 to 9.0.53 and 8.5.60 to 8.5.71 introduced a memory leak. The object introduced to collect metrics for HTTP upgrade connections was not released for WebSocket connections once the connection was closed. This created a memory leak that, over time, could lead to a denial of service via an OutOfMemoryError.
Prodotti e versioni affette
| apache | tomcat |
|---|---|
| apache | tomcat · 10.0.1 → 10.0.12 |
| apache | tomcat · 8.5.60 → 8.5.72 |
| apache | tomcat · 9.0.40 → 9.0.54 |
| debian | debian_linux |
| netapp | hci |
| netapp | management_services_for_element_software |
| oracle | agile_engineering_data_management |
| oracle | big_data_spatial_and_graph · … → 23.1 |
| oracle | communications_diameter_signaling_router · 8.0.0.0 → 8.5.0.2 |
| oracle | hospitality_cruise_shipboard_property_management_system |
| oracle | managed_file_transfer |
| oracle | middleware_common_libraries_and_tools |
| oracle | payment_interface |
| oracle | retail_customer_insights |
| oracle | retail_data_extractor_for_merchandising |
| oracle | retail_eftlink |
| oracle | retail_financial_integration |
| oracle | retail_store_inventory_management |
| oracle | sd-wan_edge |
| oracle | taleo_platform |
Analisi
Questa pagina non è ancora indicizzabile.Finché non contiene un’analisi originale — cosa espone davvero, come verificare in due minuti se un sistema è stato toccato, cosa fare se lo è stato — la pagina resta noindex. È il database a deciderlo, non il modello di pagina.