USN-1429-1: Jetty vulnerability
26 April 2012
Jetty could be made to hang or crash if it received specially crafted network traffic.
- jetty - Java servlet engine and webserver
It was discovered that Jetty computed hash values for form parameters
without restricting the ability to trigger hash collisions predictably.
This could allow a remote attacker to cause a denial of service by
sending many crafted parameters.