ZeroHour

CVE-2018-1114

CVSS 3.0
6.5 medium
EPSS
2%p83
Published
()
Modified
Description

It was found that URLResource.getLastModified() in Undertow closes the file descriptors only when they are finalized which can cause file descriptors to exhaust. This leads to a file handler leak.

Vendors
redhat
Products
undertow, virtualization, virtualization host
Weakness
CWE-400
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.