High severity7.5NVD Advisory· Published Feb 15, 2018· Updated Jun 17, 2026
CVE-2018-1041
CVE-2018-1041
Description
A vulnerability was found in the way RemoteMessageChannel, introduced in jboss-remoting versions 3.3.10, reads from an empty buffer. An attacker could use this flaw to cause denial of service via high CPU caused by an infinite loop.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:a:jboss:jboss-remoting:3.3.10:*:*:*:*:*:*:*
cpe:2.3:a:redhat:jboss_enterprise_application_platform:6.0.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:redhat:jboss_enterprise_application_platform:6.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:redhat:jboss_enterprise_application_platform:6.4.0:*:*:*:*:*:*:*
- Red Hat, Inc./jboss-remotingv5Range: since 3.3.10
Patches
Vulnerability mechanics
References
8- www.exploit-db.com/exploits/44099/nvdExploitThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1040323nvdThird Party AdvisoryVDB Entry
- access.redhat.com/errata/RHSA-2018:0268nvdVendor Advisory
- access.redhat.com/errata/RHSA-2018:0269nvdVendor Advisory
- access.redhat.com/errata/RHSA-2018:0270nvdVendor Advisory
- access.redhat.com/errata/RHSA-2018:0271nvdVendor Advisory
- access.redhat.com/errata/RHSA-2018:0275nvdVendor Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingVendor Advisory
News mentions
0No linked articles in our index yet.