CVE-2025-2240

A

flaw was found in Smallrye, where smallrye-fault-tolerance is vulnerable to an out-of-memory (OOM) issue. This vulnerability is externally triggered when calling the metrics URI. Every call creates a new object within meterMap and may lead to a denial of service (DoS) issue.

Configurations

No configuration.

History

21 May 2025, 20:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:3543 -

02 Apr 2025, 17:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:3541 -

02 Apr 2025, 14:16

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:3376 -

13 Mar 2025, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-12 15:15

Updated : 2025-05-21 20:15


NVD link : CVE-2025-2240

Mitre link : CVE-2025-2240

CVE.ORG link : CVE-2025-2240


JSON object : View

Products Affected

No product.

CWE
CWE-1325

Improperly Controlled Sequential Memory Allocation