CVE-2014-0086 PUBLISHED CVSS 4.300000190734863 MEDIUM

Reported by redhat · Published March 28, 2014

The doFilter function in webapp/PushHandlerFilter.java in JBoss RichFaces 4.3.4, 4.3.5, and 5.x allows remote attackers to cause a denial of service (memory consumption and out-of-memory error) via a large number of malformed atmosphere push requests.

Risk Scores

CVSS v2.0
4.300000190734863

Affected Products

VendorProductVersions
n/an/an/a
Mavenorg.richfaces.core:richfaces-core-impl4-alpha0, 4-alpha0, 4-alpha0
Mavenorg.richfaces:richfaces4.3.4, 4.3.4, 4.3.4
n/an/an/a, n/a, n/a

Timeline

References

Open in Interactive Console →