Memory Leak Vulnerability in WildFly by Red Hat
CVE-2020-25689
5.3MEDIUM
What is CVE-2020-25689?
A memory leak issue exists in WildFly, specifically affecting all versions up to 21.0.0.Final. When the host-controller attempts to reconnect to the domain-controller, it enters a loop that creates new connections without closing the previously established ones. This can lead to exhaustive memory consumption, potentially causing an Out of Memory (OOM) condition and resulting in denial of service. Such behavior significantly impacts the availability of the system, allowing for service interruptions that can affect users and applications relying on the WildFly server.
Affected Version(s)
wildfly-core up to 21.0.0.Final