CVE-2020-25689: Netapp Active Iq Unified Manager
Medium severity, CVSS 6.5. EPSS: 1.5% chance of exploitation in the next 30 days.
A memory leak flaw was found in WildFly in all versions up to 21.0.0.Final, where host-controller tries to reconnect in a loop, generating new connections which are not properly closed while not able to connect to domain-controller. This flaw allows an attacker to cause an Out of memory (OOM) issue, leading to a denial of service. The highest threat from this vulnerability is to system availability.
Affected products
- Netapp Active Iq Unified Manager: affected versions not specified
- Netapp Oncommand Insight: affected versions not specified
- Netapp Service Level Manager: affected versions not specified
- Red Hat Fuse: version 6.0.0 only
- Red Hat JBoss Data Grid: version 7.0.0 only
- Red Hat JBoss Enterprise Application Platform: version 7.0.0 only
- Red Hat JBoss Fuse: version 7.0.0 only
- Red Hat Openshift Application Runtimes: affected versions not specified
- Red Hat Single Sign-On: version 7.0 only
- Red Hat Wildfly: up to and including 21.0.0
Published 2020-11-02. Last modified 2026-06-17.