Netty project is an event-driven asynchronous network application framework. In versions prior to 4.1.86.Final, a StackOverflowError can be raised when parsing a malformed crafted message due to an infinite recursion. This issue is patched in version 4.1.86.Final. There is no workaround, except using a custom HaProxyMessageDecoder.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published: 2022-12-12T00:00:00

Updated: 2024-08-03T12:56:38.229Z

Reserved: 2022-09-30T00:00:00

Link: CVE-2022-41881

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-12-12T18:15:12.773

Modified: 2023-03-01T15:08:03.663

Link: CVE-2022-41881

cve-icon Redhat

Severity : Moderate

Publid Date: 2022-12-12T00:00:00Z

Links: CVE-2022-41881 - Bugzilla