CVE-2025-1634

A flaw was found in the quarkus-resteasy extension, which causes memory leaks when client requests with low timeouts are made. If a client request times out, a buffer is not released correctly, leading to increased memory usage and eventual application crash due to OutOfMemoryError.
Configurations

No configuration.

History

03 Mar 2025, 14:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:2067 -

27 Feb 2025, 16:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:1884 -

27 Feb 2025, 14:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:1885 -
Summary
  • (es) Se ha encontrado un error en la extensión quarkus-resteasy, que ocasiona pérdidas de memoria cuando los clientes efectúan peticiones con timeouts bajos. Si la petición de un cliente caduca, no se libera correctamente un buffer, lo que ocasiona un mayor uso de memoria y una eventual finalización de la aplicación debido a un OutOfMemoryError.

26 Feb 2025, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-26 17:15

Updated : 2025-03-03 14:15


NVD link : CVE-2025-1634

Mitre link : CVE-2025-1634

CVE.ORG link : CVE-2025-1634


JSON object : View

Products Affected

No product.

CWE
CWE-401

Missing Release of Memory after Effective Lifetime