CVE-2022-2191
07.07.2022, 21:15
In Eclipse Jetty versions 10.0.0 thru 10.0.9, and 11.0.0 thru 11.0.9 versions, SslConnection does not release ByteBuffers from configured ByteBufferPool in case of error code paths.Enginsight
| Vendor | Product | Version |
|---|---|---|
| eclipse | jetty | 10.0.0 ≤ 𝑥 ≤ 10.0.9 |
| eclipse | jetty | 11.0.0 ≤ 𝑥 ≤ 11.0.9 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| jetty |
| ||||||||||||||||||||
| jetty8 |
| ||||||||||||||||||||
| jetty9 |
|
Common Weakness Enumeration