Multiple vulnerabilities in the Netty framework enable a remote attacker to conduct a Denial of Service attack. The CVSS Base Score is 7.5 (High). Affected versions are Netty versions prior to 4.2.16.Final and versions prior to 4.1.136.Final, requiring upgrades to at least those respective versions.
[WID-SEC-2026-2511] Netty: Mehrere Schwachstellen ermöglichen Denial of Service CVSS Base Score 7.5 (hoch) CVSS Temporal Score 6.5 (mittel) Remoteangriff ja Datum 23.07.2026 Stand 24.07.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux UNIX Produktbeschreibung Netty ist ein asynchrones, ereignisgesteuertes Netzwerk-Anwendungs-Framework für die schnelle Entwicklung von wartbaren, hochleistungsfähigen Protokollservern und -clients. Produkte 23.07.2026 Open Source Netty <4.2.16.Final Open Source Netty <4.1.136.Final Angriff Angriff Ein Angreifer kann mehrere Schwachstellen in Netty ausnutzen, um einen Denial of Service Angriff durchzuführen. CVE Informationen Versionshistorie Feedback zum Advisory geben