CVE-2016-7046 PUBLISHED

Red Hat JBoss Enterprise Application Platform (EAP) 7, when operating as a reverse-proxy with default buffer sizes, allows remote attackers to cause a denial of service (CPU and disk consumption) via a long URL.

EPSS 4.06% · 88.4th percentile

Risk Scores

EPSS Score
4.06%
88.4th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSundertow0, 1.3.4-1, 1.3.5-1
Ubuntu:24.04:LTSundertow0, 2.3.8-2
Ubuntu:25.10undertow0, 2.3.18-1, 2.3.18-2

Timeline

References

Open in Interactive Console →