CVE-2022-1319
For an AJP 400 response, EAP 7 is improperly sending two response packets, and those packets have the reuse flag set even though JBoss EAP closes the connection.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (1.58%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
A flaw was found in Undertow. For an AJP 400 response, EAP 7 is improperly sending two response packets, and those packets have the reuse flag set even though JBoss EAP closes the connection. A failure occurs when the connection is reused after a 400 by CPING since it reads in the second SEND_HEADERS response packet instead of a CPONG.
- CVSS 3.1
- 7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 1.58% probability · 74th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-252
- Affected
- redhat/openshift application runtimes · redhat/single sign-on · redhat/undertow · netapp/active iq unified manager · netapp/cloud secure agent · netapp/oncommand insight · netapp/oncommand workflow automation
- Source
- secalert@redhat.com
References
- https://access.redhat.com/security/cve/CVE-2022-1319Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2073890Issue Tracking, Vendor Advisory
- https://github.com/undertow-io/undertow/commit/1443a1a2bbb8e32e56788109d8285db250d55c8bPatch, Third Party Advisory
- https://github.com/undertow-io/undertow/commit/7c5b3ab885b5638fd3f1e8a935d5063d68aa2df3Patch, Third Party Advisory
- https://issues.redhat.com/browse/UNDERTOW-2060Issue Tracking, Vendor Advisory
- https://security.netapp.com/advisory/ntap-20221014-0006/Third Party Advisory
- https://access.redhat.com/security/cve/CVE-2022-1319Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2073890Issue Tracking, Vendor Advisory
- https://github.com/undertow-io/undertow/commit/1443a1a2bbb8e32e56788109d8285db250d55c8bPatch, Third Party Advisory
- https://github.com/undertow-io/undertow/commit/7c5b3ab885b5638fd3f1e8a935d5063d68aa2df3Patch, Third Party Advisory
- https://issues.redhat.com/browse/UNDERTOW-2060Issue Tracking, Vendor Advisory
- https://security.netapp.com/advisory/ntap-20221014-0006/Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.