Description of problem: When running a CertificateRevocationListTask, the task will eventually hit 100% CPU use, and maxes out the available heap size, 14GB in this case. Additionally, the node becomes unresponsive to any HTTP requests, as the majority of the CPU time is spent in full GC. Additionally, other nodes that may create/run any async jobs, such as hypervisor checkins or refreshPoolsJobs, will become unresponsive to HTTP requests. They're unresponsive, even though they're barely using any CPU and memory is fine. Version-Release number of selected component (if applicable): 2.3.9 How reproducible: Always, but only in prod. Steps to Reproduce: 1. Schedule a CertificateRevocationListTask 2. Wait 10-15 minutes 3. Try to make a benign HTTP call, like GET status Actual results: Task takes over two hours, still doesn't complete, node becomes unresponsive due to high GC, other "worker" nodes become unresponsivce (no GC). Expected results: CertificateRevocationListTask can complete without consuming all 14GB of RAM to do so, and does it without locking out the other worker nodes. Additional info: This can be considered the sequel to BZ1566244.