HIGHMaven

SslHandler doesn't correctly validate packets which can lead to native crash when using native SSLEngine

SslHandler doesn't correctly validate packets which can lead to native crash when using native SSLEngine

CVE-2025-24970Published 1 year agoUpdated 5 days agoSource: OSV

Affected packages

  • io.netty:netty-handler4.1.91.Final → 4.1.118.Final

Exploit signal

Known exploited (CISA KEV)
No
EPSS score
EPSS percentile

EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.

SslHandler doesn't correctly validate packets which can lead to native crash when using native SSLEngine | HackTribune