Ubuntu Security Update USN-7115-1: Waitress vulnerabilities

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,843
Reaction score
74
Credits
-1,257
It was discovered that Waitress could process follow up requests when receiving a specially crafted message. An attacker could use this issue to have the server process inconsistent client requests. (CVE-2024-49768) Dylan Jay discovered that Waitress could be lead to write to an unexisting socket after closing the remote connection. An attacker could use this issue to increase resource utilization leading to a denial of service. (CVE-2024-49769)

Continue reading...
 


Follow Linux.org

Staff online

Members online


Top