Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2021-28165 PoC — Eclipse Jetty 资源管理错误漏洞

Source
Associated Vulnerability
Title:Eclipse Jetty 资源管理错误漏洞 (CVE-2021-28165)
Description:Eclipse Jetty是Eclipse基金会的一个开源的、基于Java的Web服务器和Java Servlet容器。 Eclipse Jetty 7.2.2 to 9.4.38, 10.0.0.alpha0 to 10.0.1, and 11.0.0.alpha0 to 11.0.1 存在资源管理错误漏洞,该漏洞源于接收到较大的无效TLS帧后,CPU使用率可以达到100%。
File Snapshot

[4.0K] /data/pocs/0e1a537d7aba24c950a69e79df6972f79121053e ├── [ 60K] SslConnection.java └── [ 14K] SSLEngineTest.java 0 directories, 2 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.