Description
In Apache MINA, a specifically crafted, malformed HTTP request may cause the HTTP Header decoder to loop indefinitely. The decoder assumed that the HTTP Header begins at the beginning of the buffer and loops if there is more data than expected. Please update MINA to 2.1.5 or greater.
Published: 2021-11-01
Score: 6.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2021-2307 In Apache MINA, a specifically crafted, malformed HTTP request may cause the HTTP Header decoder to loop indefinitely. The decoder assumed that the HTTP Header begins at the beginning of the buffer and loops if there is more data than expected. Please update MINA to 2.1.5 or greater.
Github GHSA Github GHSA GHSA-6mcm-j9cj-3vc3 Infinite loop in Apache MINA
History

No history.

Subscriptions

Apache Mina
Oracle Banking Payments Banking Trade Finance Process Management Banking Treasury Management Communications Cloud Native Core Console Customer Management And Segmentation Foundation Flexcube Universal Banking Fusion Middleware Common Libraries And Tools Oss Support Tools
cve-icon MITRE

Status: PUBLISHED

Assigner: apache

Published:

Updated: 2024-08-04T03:22:25.568Z

Reserved: 2021-10-04T00:00:00.000Z

Link: CVE-2021-41973

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-11-01T09:15:09.763

Modified: 2024-11-21T06:27:00.697

Link: CVE-2021-41973

cve-icon Redhat

Severity : Moderate

Publid Date: 2021-11-01T00:00:00Z

Links: CVE-2021-41973 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses