<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 16:05:57 +0000</lastBuildDate>
    <item>
      <title>fkie_cve-2024-4109</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-4109</link>
      <description>&lt;p&gt;Rejected reason: Red Hat Product Security has determined that this CVE is not a security vulnerability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Rejected reason: Red Hat Product Security has determined that this CVE is not a security vulnerability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-4109</guid>
    </item>
    <item>
      <title>Withdrawn: GHSA-22c5-cpvr-cfvq — Withdrawn Advisory: undertow: information leakage via HTTP/2 request header reuse</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-22c5-cpvr-cfvq</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: io.undertow:undertow-core&lt;/p&gt;
&lt;p&gt;# Withdrawn Advisory
This advisory has been withdrawn because it was determined to not be a valid vulnerability. This link is maintained to preserve external references. For more information, see https://nvd.nist.gov/vuln/detail/CVE-2024-4109.&lt;/p&gt;
&lt;p&gt;# Original Description
A flaw was found in Undertow. An HTTP request header value from a previous stream may be incorrectly reused for a request associated with a subsequent stream on the same HTTP/2 connection. This issue can potentially lead to information leakage between requests.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: io.undertow:undertow-core&lt;/p&gt;
&lt;p&gt;# Withdrawn Advisory
This advisory has been withdrawn because it was determined to not be a valid vulnerability. This link is maintained to preserve external references. For more information, see https://nvd.nist.gov/vuln/detail/CVE-2024-4109.&lt;/p&gt;
&lt;p&gt;# Original Description
A flaw was found in Undertow. An HTTP request header value from a previous stream may be incorrectly reused for a request associated with a subsequent stream on the same HTTP/2 connection. This issue can potentially lead to information leakage between requests.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-22c5-cpvr-cfvq</guid>
    </item>
    <item>
      <title>gsd-2024-4109</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2024-4109</link>
      <description>gsd-2024-4109</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2024-4109</guid>
    </item>
    <item>
      <title>OESA-2024-2579 — undertow security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2024-2579</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP3: undertow, openEuler:20.03-LTS-SP4: undertow, openEuler:22.03-LTS-SP1: undertow, openEuler:24.03-LTS: undertow, openEuler:22.03-LTS-SP4: undertow&lt;/p&gt;
&lt;p&gt;Java web server using non-blocking IO&#13;
&#13;
Security Fix(es):&#13;
&#13;
Description: Product Security received a report that Undertow might incorrectly re-use an HTTP request header value from a previous stream for a request associated with a subsequent stream on the same HTTP/2 connection. The issue is linked to the readHpackString method and its interaction with the stringBuilder field. While such behavior typically results in an error followed by the termination of the HTTP/2 connection, it presents a potential vector for information leakage between requests.  The original reporter referenced a similar issue in Apache Tomcat (CVE-2020-17527). In the patch for that vulnerability (https://github.com/apache/tomcat/commit/8d2fe6894d6e258a6d615d7f786acca80e6020cb) a StringBuilder field was improperly reused across multiple requests, leading to this issue. In the io.undertow.protocols.http2.HpackDecoder class of Undertow, within the readHpackString method, there is a code pattern identical to the one mentioned:  ``` for (int i = 0; i &amp;amp;lt; length; ++i) { stringBuilder.append((char) buffer.get()); } String ret = stringBuilder.toString(); stringBuilder.setLength(0); if (ret.isEmpty()) { //return the interned empty string, rather than allocating a new one each time return &amp;amp;quot;&amp;amp;quot;; } ```  Steps to reproduce: No reproducers or PoC were provided, this issue was identified through static testing.   Affected versions:  2.2.x, 2.3.x, and 3.x(CVE-2024-4109)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP3: undertow, openEuler:20.03-LTS-SP4: undertow, openEuler:22.03-LTS-SP1: undertow, openEuler:24.03-LTS: undertow, openEuler:22.03-LTS-SP4: undertow&lt;/p&gt;
&lt;p&gt;Java web server using non-blocking IO&#13;
&#13;
Security Fix(es):&#13;
&#13;
Description: Product Security received a report that Undertow might incorrectly re-use an HTTP request header value from a previous stream for a request associated with a subsequent stream on the same HTTP/2 connection. The issue is linked to the readHpackString method and its interaction with the stringBuilder field. While such behavior typically results in an error followed by the termination of the HTTP/2 connection, it presents a potential vector for information leakage between requests.  The original reporter referenced a similar issue in Apache Tomcat (CVE-2020-17527). In the patch for that vulnerability (https://github.com/apache/tomcat/commit/8d2fe6894d6e258a6d615d7f786acca80e6020cb) a StringBuilder field was improperly reused across multiple requests, leading to this issue. In the io.undertow.protocols.http2.HpackDecoder class of Undertow, within the readHpackString method, there is a code pattern identical to the one mentioned:  ``` for (int i = 0; i &amp;amp;lt; length; ++i) { stringBuilder.append((char) buffer.get()); } String ret = stringBuilder.toString(); stringBuilder.setLength(0); if (ret.isEmpty()) { //return the interned empty string, rather than allocating a new one each time return &amp;amp;quot;&amp;amp;quot;; } ```  Steps to reproduce: No reproducers or PoC were provided, this issue was identified through static testing.   Affected versions:  2.2.x, 2.3.x, and 3.x(CVE-2024-4109)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2024-2579</guid>
    </item>
    <item>
      <title>RHSA-2024:10927 — Red Hat Security Advisory: Red Hat JBoss Enterprise Application Platform 7.4.20 Security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2024:10927</link>
      <description>&lt;p&gt;undertow: information leakage via HTTP/2 request header reuse&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;undertow: information leakage via HTTP/2 request header reuse&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2024:10927</guid>
    </item>
    <item>
      <title>Withdrawn: UBUNTU-CVE-2024-4109</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-4109</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: undertow, Ubuntu:Pro:18.04:LTS: undertow, Ubuntu:Pro:20.04:LTS: undertow, Ubuntu:22.04:LTS: undertow, Ubuntu:24.10: undertow, Ubuntu:24.04:LTS: undertow&lt;/p&gt;
&lt;p&gt;Rejected reason: Red Hat Product Security has determined that this CVE is not a security vulnerability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: undertow, Ubuntu:Pro:18.04:LTS: undertow, Ubuntu:Pro:20.04:LTS: undertow, Ubuntu:22.04:LTS: undertow, Ubuntu:24.10: undertow, Ubuntu:24.04:LTS: undertow&lt;/p&gt;
&lt;p&gt;Rejected reason: Red Hat Product Security has determined that this CVE is not a security vulnerability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-4109</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-3654 — Red Hat JBoss Enterprise Application Platform: Schwachstelle ermöglicht Offenlegung von Informationen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3654</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Red Hat JBoss Enterprise Application Platform ausnutzen, um Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Red Hat JBoss Enterprise Application Platform ausnutzen, um Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3654</guid>
    </item>
  </channel>
</rss>
