Null Byte and Credential Injection Vulnerabilities in Netty's SOCKS Clients
CVE-2026-62380
6.3MEDIUM
What is CVE-2026-62380?
Netty's SOCKS client encoders (both SOCKS4 and SOCKS5) are exposed to vulnerabilities due to improper validation in authentication fields and domain addresses. Attackers can exploit these weaknesses by injecting null bytes or CRLF characters, allowing for potential domain spoofing, user ID truncation, and unauthorized access through credential data manipulation. Users are advised to update to versions 4.2.17.Final or 4.1.137.Final to mitigate these risks effectively.
Affected Version(s)
netty 4.2.0.Final < 4.2.16.Final
netty 0 < 4.1.137.Final
netty 4.2.16.Final
