[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2018-1125 --- nginx

ID: oval:org.secpod.oval:def:1600964Date: (C)2018-12-19   (M)2022-08-24
Class: PATCHFamily: unix




nginx before versions 1.15.6 and 1.14.1 has a vulnerability in the implementation of HTTP/2 that can allow for excessive memory consumption. This issue affects nginx compiled with the ngx_http_v2_module if the 'http2' option of the 'listen' directive is used in a configuration file. nginx before versions 1.15.6 and 1.14.1 has a vulnerability in the implementation of HTTP/2 that can allow for excessive CPU usage. This issue affects nginx compiled with the ngx_http_v2_module if the 'http2' option of the 'listen' directive is used in a configuration file

Platform:
Amazon Linux AMI
Product:
nginx
Reference:
ALAS-2018-1125
CVE-2018-16843
CVE-2018-16844
CVE    2
CVE-2018-16844
CVE-2018-16843
CPE    2
cpe:/o:amazon:linux
cpe:/a:igor_sysoev:nginx

© SecPod Technologies