Security Advisory

CVE-2023-34054

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-11-28 08:16:14
Last updated 2024-08-02 16:01:52
Assigner vmware
CVSS score 5.3
State PUBLISHED

Description

In Reactor Netty HTTP Server, versions 1.1.x prior to 1.1.13 and versions 1.0.x prior to 1.0.39, it is possible for a user to provide specially crafted HTTP requests that may cause a denial-of-service (DoS) condition. Specifically, an application is vulnerable if Reactor Netty HTTP Server built-in integration with Micrometer is enabled.