Denial of Service Vulnerability in Netty by Red Hat
CVE-2014-0193
Currently unrated
What is CVE-2014-0193?
The WebSocket08FrameDecoder component of Netty versions prior to 3.6.9, 3.7.1, 3.8.2, 3.9.1, and 4.0.19 contains a vulnerability that allows remote attackers to exploit a crafted TextWebSocketFrame followed by a prolonged series of ContinuationWebSocketFrames. This results in excessive memory consumption, potentially leading to service outages and degradation of application performance, impacting the overall availability of affected services.