Unrated severityNVD Advisory· Published Jul 23, 2026· Updated Jul 24, 2026
Rhcs: memory leak during https connection leads to denial of service
CVE-2026-12353
Description
An unauthenticated attacker could trigger an Out of Memory condition to crash the Java process for RHCS by repeatedly sending HTTP requests to the TLS endpoint. Depending on how the RHCS server is configured, a manual intervention to restart it may prove necessary.
Affected products
1Patches
Vulnerability mechanics
References
2- access.redhat.com/security/cve/CVE-2026-12353mitrevdb-entryx_refsource_REDHAT
- bugzilla.redhat.com/show_bug.cgimitreissue-trackingx_refsource_REDHAT
News mentions
0No linked articles in our index yet.