MODERATEcrates.io →
Resource exhaustion vulnerability in h2 may lead to Denial of Service (DoS)
Resource exhaustion vulnerability in h2 may lead to Denial of Service (DoS)
Affected packages
- h2
Exploit signal
- Known exploited (CISA KEV)
- No
- EPSS score
- —
- EPSS percentile
- —
EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.
Sources
- https://github.com/hyperium/h2/pull/737
- https://github.com/hyperium/h2/commit/59570e11ccddbec85f67a0c7aa353f7730c68854
- https://github.com/hyperium/h2/commit/d919cd6fd8e0f4f5d1f6282fab0b38a1b4bf999c
- https://github.com/hyperium/h2
- https://rustsec.org/advisories/RUSTSEC-2024-0003.html
Structured record: https://osv.dev/vulnerability/GHSA-8r5v-vm4m-4g25
Recommended response stack
Some links are affiliate links — HackTribune may earn a commission at no extra cost to you.
Get incidents like this as alerts for your stack.
Join the beta