<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Wed, 07 Oct 2026 11:18:25 +0000</lastBuildDate>
    <item>
      <title>CVE-2025-25193 — Denial of Service attack on windows app using Netty</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2025-25193</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; netty&lt;/p&gt;
&lt;p&gt;Netty, an asynchronous, event-driven network application framework, has a vulnerability in versions up to and including 4.1.118.Final. An unsafe reading of environment file could potentially cause a denial of service in Netty. When loaded on an Windows application, Netty attempts to load a file that does not exist. If an attacker creates such a large file, the Netty application crash. A similar issue was previously reported as CVE-2024-47535. This issue was fixed, but the fix was incomplete in that null-bytes were not counted against the input limit. Commit d1fbda62d3a47835d3fb35db8bd42ecc205a5386 contains an updated fix.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; netty&lt;/p&gt;
&lt;p&gt;Netty, an asynchronous, event-driven network application framework, has a vulnerability in versions up to and including 4.1.118.Final. An unsafe reading of environment file could potentially cause a denial of service in Netty. When loaded on an Windows application, Netty attempts to load a file that does not exist. If an attacker creates such a large file, the Netty application crash. A similar issue was previously reported as CVE-2024-47535. This issue was fixed, but the fix was incomplete in that null-bytes were not counted against the input limit. Commit d1fbda62d3a47835d3fb35db8bd42ecc205a5386 contains an updated fix.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2025-25193</guid>
    </item>
    <item>
      <title>GHSA-xq3w-v528-46rv — Denial of Service attack on windows app using netty</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-xq3w-v528-46rv</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: io.netty:netty-common&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;An unsafe reading of environment file could potentially cause a denial of service in Netty.
When loaded on an Windows application, Netty attemps to load a file that does not exist. If an attacker creates such a large file, the Netty application crash.&lt;/p&gt;
&lt;p&gt;### Details&lt;/p&gt;
&lt;p&gt;When the library netty is loaded in a java windows application, the library tries to identify the system environnement in which it is executed.&lt;/p&gt;
&lt;p&gt;At this stage, Netty tries to load both `/etc/os-release` and `/usr/lib/os-release` even though it is in a Windows environment.&lt;/p&gt;
&lt;p&gt;&amp;lt;img width=&amp;#34;364&amp;#34; alt=&amp;#34;1&amp;#34; src=&amp;#34;https://github.com/user-attachments/assets/9466b181-9394-45a3-b0e3-1dcf105def59&amp;#34;&amp;gt;&lt;/p&gt;
&lt;p&gt;If netty finds this files, it reads them and loads them into memory.&lt;/p&gt;
&lt;p&gt;By default :&lt;/p&gt;
&lt;p&gt;- The JVM maximum memory size is set to 1 GB,
- A non-privileged user can create a directory at `C:\` and create files within it.&lt;/p&gt;
&lt;p&gt;&amp;lt;img width=&amp;#34;340&amp;#34; alt=&amp;#34;2&amp;#34; src=&amp;#34;https://github.com/user-attachments/assets/43b359a2-5871-4592-ae2b-ffc40ac76831&amp;#34;&amp;gt;&lt;/p&gt;
&lt;p&gt;&amp;lt;img width=&amp;#34;523&amp;#34; alt=&amp;#34;3&amp;#34; src=&amp;#34;https://github.com/user-attachments/assets/ad5c6eed-451c-4513-92d5-ba0eee7715c1&amp;#34;&amp;gt;&lt;/p&gt;
&lt;p&gt;the source code identified :
https://github.com/netty/netty/blob/4.1/common/src/main/java/io/netty/util/internal/PlatformDependent.java&lt;/p&gt;
&lt;p&gt;Despite the implementation of the function `normalizeOs()` the source code not verify the OS before reading `C:\etc\os-release` and `C:\usr\lib\os-release`.&lt;/p&gt;
&lt;p&gt;### PoC&lt;/p&gt;
&lt;p&gt;Create a file larger than 1 GB of data in `C:\etc\os-release` or `C:\usr\lib\os-releas…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: io.netty:netty-common&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;An unsafe reading of environment file could potentially cause a denial of service in Netty.
When loaded on an Windows application, Netty attemps to load a file that does not exist. If an attacker creates such a large file, the Netty application crash.&lt;/p&gt;
&lt;p&gt;### Details&lt;/p&gt;
&lt;p&gt;When the library netty is loaded in a java windows application, the library tries to identify the system environnement in which it is executed.&lt;/p&gt;
&lt;p&gt;At this stage, Netty tries to load both `/etc/os-release` and `/usr/lib/os-release` even though it is in a Windows environment.&lt;/p&gt;
&lt;p&gt;&amp;lt;img width=&amp;#34;364&amp;#34; alt=&amp;#34;1&amp;#34; src=&amp;#34;https://github.com/user-attachments/assets/9466b181-9394-45a3-b0e3-1dcf105def59&amp;#34;&amp;gt;&lt;/p&gt;
&lt;p&gt;If netty finds this files, it reads them and loads them into memory.&lt;/p&gt;
&lt;p&gt;By default :&lt;/p&gt;
&lt;p&gt;- The JVM maximum memory size is set to 1 GB,
- A non-privileged user can create a directory at `C:\` and create files within it.&lt;/p&gt;
&lt;p&gt;&amp;lt;img width=&amp;#34;340&amp;#34; alt=&amp;#34;2&amp;#34; src=&amp;#34;https://github.com/user-attachments/assets/43b359a2-5871-4592-ae2b-ffc40ac76831&amp;#34;&amp;gt;&lt;/p&gt;
&lt;p&gt;&amp;lt;img width=&amp;#34;523&amp;#34; alt=&amp;#34;3&amp;#34; src=&amp;#34;https://github.com/user-attachments/assets/ad5c6eed-451c-4513-92d5-ba0eee7715c1&amp;#34;&amp;gt;&lt;/p&gt;
&lt;p&gt;the source code identified :
https://github.com/netty/netty/blob/4.1/common/src/main/java/io/netty/util/internal/PlatformDependent.java&lt;/p&gt;
&lt;p&gt;Despite the implementation of the function `normalizeOs()` the source code not verify the OS before reading `C:\etc\os-release` and `C:\usr\lib\os-release`.&lt;/p&gt;
&lt;p&gt;### PoC&lt;/p&gt;
&lt;p&gt;Create a file larger than 1 GB of data in `C:\etc\os-release` or `C:\usr\lib\os-releas…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-xq3w-v528-46rv</guid>
    </item>
  </channel>
</rss>
