Security Advisory

CVE-2025-2240

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-03-12 14:55:15
Last updated 2026-05-06 16:47:49
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

A flaw was found in Smallrye, where smallrye-fault-tolerance is vulnerable to an out-of-memory (OOM) issue. This vulnerability is externally triggered when calling the metrics URI. Every call creates a new object within meterMap and may lead to a denial of service (DoS) issue.