RHSA-2025:16989HighCVSS 7.5
Red Hat Security Advisory: Red Hat Offline Knowledge Portal update
🔗 CVE IDs covered (1)
📋 Description
CVE-2025-5115 — jetty: HTTP/2 (including DNS over HTTPS) contains a design flaw and is vulnerable to "MadeYouReset" DoS attack through HTTP/2 control frames
🔗 References (7)
- selfhttps://access.redhat.com/errata/RHSA-2025:16989
- externalhttps://access.redhat.com/products/red-hat-offline-knowledge-portal
- externalhttps://access.redhat.com/security/cve/CVE-2025-5115
- externalhttps://access.redhat.com/security/cve/cve-2025-5115/
- externalhttps://access.redhat.com/security/updates/classification/
- externalhttps://docs.redhat.com/en/documentation/red_hat_offline_knowledge_portal/1.0
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_16989.json