ZeroHour

CVE-2021-4213

CVSS 3.1
7.5 high
EPSS
2%p75
Published
()
Modified
Description

A flaw was found in JSS, where it did not properly free up all memory. Over time, the wasted memory builds up in the server memory, saturating the server’s RAM. This flaw allows an attacker to force the invocation of an out-of-memory process, causing a denial of service.

Vendors
dogtagpkiredhatdebian
Products
network security services for java, enterprise linux, debian linux
Weakness
CWE-401
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.