CVE-2020-27822

Description

A flaw was found in Wildfly affecting versions 19.0.0.Final, 19.1.0.Final, 20.0.0.Final, 20.0.1.Final, and 21.0.0.Final. When an application uses the OpenTracing APIs java-interceptors, there is a possibility of a memory leak. This flaw allows an attacker to impact the availability of the server. The highest threat from this vulnerability is to system availability.

Risk Information

Base Score
5.9
MODERATE
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.339

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2020-27822 are fixed in RedHat - wildfly-parent 21.0.2Windows
Vulnerabilities CVE-2020-27822 are fixed in RedHat - wildfly-parent 22.0.0Windows
Vulnerabilities CVE-2020-27822 are fixed in RedHat - wildfly-parent for Linux 21.0.2Linux
Vulnerabilities CVE-2020-27822 are fixed in RedHat - wildfly-parent for Linux 22.0.0Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234