THREAT OPS › Threat News › [NVD] CVE-2024-1300 (MEDIUM 5.4) — A vulnerability in the Eclipse Vert.x toolkit causes a memory leak in TCP servers configured with TLS and SNI support. When processing an unknown SNI server name assigned the default certificate instead of a mapped certificate, the SSL context is erroneously cached in the server
[NVD] CVE-2024-1300 (MEDIUM 5.4) — A vulnerability in the Eclipse Vert.x toolkit causes a memory leak in TCP servers configured with TLS and SNI support. When processing an unknown SNI server name assigned the default certificate instead of a mapped certificate, the SSL context is erroneously cached in the server
CVE-2024-1300 CVSS: 5.4 MEDIUM Published: 2024-04-02T08:15:53.993
A vulnerability in the Eclipse Vert.x toolkit causes a memory leak in TCP servers configured with TLS and SNI support. When processing an unknown SNI server name assigned the default certificate instead of a mapped certificate, the SSL context is erroneously cached in the server name map, leading to memory exhaustion. This flaw all
Indicators of compromise
- CVE-2024-1300cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2024-1300