Gentoo Linux Security Advisory GLSA 200804-26 – Openfire’s connection manager in the file ConnectionManagerImpl.java cannot handle clients that fail to read messages, and has no limit on their session’s send buffer. Versions less than 3.5.0 are affected.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/65721/glsa-200804-26.txt
Source: https://packetstormsecurity.com/files/65721/Gentoo-Linux-Security-Advisory-200804-26.html

