[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

252097

 
 

909

 
 

196747

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

nghttp2: Multiple Vulnerabilities (CVE-2019-9511, CVE-2019-9513)

ID: oval:org.secpod.oval:def:59756Date: (C)2019-06-12   (M)2024-05-22
Class: PATCHFamily: unix




Affected versions: nghttp2 version < 1.39.2The attacker creates multiple request streams and continually shuffles the priority of the streams in a way that causes substantial churn to the priority tree. This can consume excess CPU, potentially leading to a denial of service.

Platform:
Alpine Linux 3.10
Product:
nghttp2
Reference:
10760
CVE-2019-9511
CVE-2019-9513
CVE    2
CVE-2019-9511
CVE-2019-9513

© SecPod Technologies