High severity7.5NVD Advisory· Published May 6, 2016· Updated May 6, 2026
CVE-2016-2094
CVE-2016-2094
Description
The HTTPS NIO Connector allows remote attackers to cause a denial of service (thread consumption) by opening a socket and not sending an SSL handshake, aka a read-timeout vulnerability.
Affected products
1- cpe:2.3:a:jboss:enterprise_application_platform:6.4.6:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- rhn.redhat.com/errata/RHSA-2016-0595.htmlnvdVendor Advisory
- rhn.redhat.com/errata/RHSA-2016-0596.htmlnvdVendor Advisory
- rhn.redhat.com/errata/RHSA-2016-0597.htmlnvdVendor Advisory
- rhn.redhat.com/errata/RHSA-2016-0598.htmlnvdVendor Advisory
- rhn.redhat.com/errata/RHSA-2016-0599.htmlnvdVendor Advisory
- bugzilla.redhat.com/show_bug.cginvdVendor Advisory
News mentions
0No linked articles in our index yet.