← Back

CVE-2020-14297

nvd nist
Published: Jul 24, 2020Modified: Jun 17, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

A flaw was discovered in Wildfly's EJB Client as shipped with Red Hat JBoss EAP 7, where some specific EJB transaction objects may get accumulated over the time and can cause services to slow down and eventaully unavailable. An attacker can take advantage and cause denial of service attack and make services unavailable.

Affected (6)

6 products
Amq
Jboss Ejb Client
Jboss Fuse
Openshift Application Runtimes
Single Sign On
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Version 2.0
From 1.0.0 to 4.0.34
All versions
Version 6.0.0
All versions
Version 7.0

References (2)

Source: secalert@redhat.com
Issue TrackingThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingThird Party Advisory

Timeline

No history available yet.