CVE-2020-27822
published 2020-12-08CVE-2020-27822: A flaw was found in Wildfly affecting versions 19.0.0.Final, 19.1.0.Final, 20.0.0.Final, 20.0.1.Final, and 21.0.0.Final. When an application uses the…
PriorityP430medium5.9CVSS 3.1
AVNACHPRNUINSUCNINAH
EPSS
1.11%
62.2th percentile
A flaw was found in Wildfly affecting versions 19.0.0.Final, 19.1.0.Final, 20.0.0.Final, 20.0.1.Final, and 21.0.0.Final. When an application uses the OpenTracing API's java-interceptors, there is a possibility of a memory leak. This flaw allows an attacker to impact the availability of the server. The highest threat from this vulnerability is to system availability.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | wildfly | — | — |
| redhat | wildfly | — | — |
| redhat | wildfly | — | — |
| redhat | wildfly | — | — |
| redhat | wildfly | — | — |
| redhat | wildfly | — | — |
CVSS provenance
nvdv3.15.9MEDIUMCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.07.1HIGHAV:N/AC:M/Au:N/C:N/I:N/A:C
vendor_redhat5.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
wildfly: Potential Memory leak in Wildfly when using OpenTracing
vendor_redhat·2020-12-04·CVSS 5.9
CVE-2020-27822 [MEDIUM] CWE-401 wildfly: Potential Memory leak in Wildfly when using OpenTracing
wildfly: Potential Memory leak in Wildfly when using OpenTracing
A flaw was found in Wildfly affecting versions 19.0.0.Final, 19.1.0.Final, 20.0.0.Final, 20.0.1.Final, and 21.0.0.Final. When an application uses the OpenTracing API's java-interceptors, there is a possibility of a memory leak. This flaw allows an attacker to impact the availability of the server. The highest threat from this vulnerability is to system availability.
A flaw was found in Wildfly. When an application uses the OpenTracing API's java-interceptors, there is a possibility of a memory leak. This flaw allows an attacker to impact the availability of the server. The highest threat from this vulnerability is to system availability.
Package: wildfly (Red Hat Data Grid 8) - Not affected
Package: wildfly (Red Hat Decis
GHSA
Wildfly has a memory leak vulnerability
ghsa·2022-05-24
CVE-2020-27822 [MEDIUM] CWE-401 Wildfly has a memory leak vulnerability
Wildfly has a memory leak vulnerability
A flaw was found in Wildfly affecting versions 19.0.0.Final, 19.1.0.Final, 20.0.0.Final, 20.0.1.Final, and 21.0.0.Final. When an application uses the OpenTracing API's java-interceptors, there is a possibility of a memory leak. This flaw allows an attacker to impact the availability of the server. The highest threat from this vulnerability is to system availability.
OSV
Wildfly has a memory leak vulnerability
osv·2022-05-24
CVE-2020-27822 [MEDIUM] Wildfly has a memory leak vulnerability
Wildfly has a memory leak vulnerability
A flaw was found in Wildfly affecting versions 19.0.0.Final, 19.1.0.Final, 20.0.0.Final, 20.0.1.Final, and 21.0.0.Final. When an application uses the OpenTracing API's java-interceptors, there is a possibility of a memory leak. This flaw allows an attacker to impact the availability of the server. The highest threat from this vulnerability is to system availability.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2020-12-08
Published