{"id":"CVE-2004-2381","aliases":[],"url":"https://o3.security/vulnerability/CVE-2004-2381","summary":"Jetty HTTP Server Denial of Service vulnerability","details":"HttpRequest.java in Jetty HTTP Server before 4.2.19 allows remote attackers to cause denial of service (memory usage and application crash) via HTTP requests with a large Content-Length.","published":"2022-04-29T03:01:19Z","modified":"2024-11-28T05:30:07.803612Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"Maven","name":"org.mortbay.jetty:jetty","fixedVersion":"4.2.19"}],"fix":null,"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2004-2381"},{"type":"WEB","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/15537"},{"type":"WEB","url":"http://cvs.sourceforge.net/viewcvs.py/jetty/Jetty/src/org/mortbay/http/HttpRequest.java?r1=1.75&r2=1.76"},{"type":"WEB","url":"http://sourceforge.net/project/shownotes.php?release_id=224743"},{"type":"WEB","url":"http://www.osvdb.org/4387"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2024-11-28T05:30:07.803612Z"}}