<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 20:13:46 +0000</lastBuildDate>
    <item>
      <title>CVE-2024-1023 — Io.vertx/vertx-core: memory leak due to the use of netty fastthreadlocal data structures in vertx</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2024-1023</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; vertx-core, Red Hat CEQ 3.2, Red Hat Cryostat 2 on RHEL 8, Red Hat MTA-6.2-RHEL-9, Red Hat AMQ Streams 2.7.0, Red Hat build of Apache Camel 4.4.1 for Spring Boot 3.2, Red Hat build of Quarkus 3.2.11.Final, Red Hat RHINT Service Registry 2.5.11 GA, Red Hat A-MQ Clients 2, Red Hat Migration Toolkit for Runtimes and 16 more&lt;/p&gt;
&lt;p&gt;A vulnerability in the Eclipse Vert.x toolkit results in a memory leak due to using Netty FastThreadLocal data structures. Specifically, when the Vert.x HTTP client establishes connections to different hosts, triggering the memory leak. The leak can be accelerated with intimate runtime knowledge, allowing an attacker to exploit this vulnerability. For instance, a server accepting arbitrary internet addresses could serve as an attack vector by connecting to these addresses, thereby accelerating the memory leak.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; vertx-core, Red Hat CEQ 3.2, Red Hat Cryostat 2 on RHEL 8, Red Hat MTA-6.2-RHEL-9, Red Hat AMQ Streams 2.7.0, Red Hat build of Apache Camel 4.4.1 for Spring Boot 3.2, Red Hat build of Quarkus 3.2.11.Final, Red Hat RHINT Service Registry 2.5.11 GA, Red Hat A-MQ Clients 2, Red Hat Migration Toolkit for Runtimes and 16 more&lt;/p&gt;
&lt;p&gt;A vulnerability in the Eclipse Vert.x toolkit results in a memory leak due to using Netty FastThreadLocal data structures. Specifically, when the Vert.x HTTP client establishes connections to different hosts, triggering the memory leak. The leak can be accelerated with intimate runtime knowledge, allowing an attacker to exploit this vulnerability. For instance, a server accepting arbitrary internet addresses could serve as an attack vector by connecting to these addresses, thereby accelerating the memory leak.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2024-1023</guid>
    </item>
  </channel>
</rss>
