Description
An improper handing of overflow in the UTF-8 decoder with supplementary characters can lead to an infinite loop in the decoder causing a Denial of Service. Versions Affected: Apache Tomcat 9.0.0.M9 to 9.0.7, 8.5.0 to 8.5.30, 8.0.0.RC1 to 8.0.51, and 7.0.28 to 7.0.86.
Remediation
References
Related Vulnerabilities
Jolokia Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2014-0168)
WordPress Plugin Viral Quiz Maker-OnionBuzz SQL Injection (1.2.1)
MediaWiki Exposure of Resource to Wrong Sphere Vulnerability (CVE-2021-31547)
WordPress Plugin MPL-Publisher-Create your Ebook & Audiobook Cross-Site Scripting (1.29.1)
WordPress Plugin Login With Ajax Cross-Site Scripting (3.1.6)