CVE-2025-31650 - log back

CVE-2025-31650 edited at 09 Jun 2025 02:24:40
Severity
- Unknown
+ High
Remote
- Unknown
+ Remote
Type
- Unknown
+ Denial of service
Description
+ Incorrect error handling for some invalid HTTP priority headers resulted in incomplete clean-up of the failed request which created a memory leak. A large number of such requests could trigger an OutOfMemoryException resulting in a denial of service.
References
+ https://lists.apache.org/thread/j6zzk0y3yym9pzfzkq5vcyxzz0yzh826
+ https://nvd.nist.gov/vuln/detail/cve-2025-31650
CVE-2025-31650 created at 09 Jun 2025 02:22:59
Severity
+ Unknown
Remote
+ Unknown
Type
+ Unknown
Description
References
Notes