Project

General

Profile

Actions

Security #6751

closed

Security #5926: http2: evasion by splitting header fields over frames

http2: evasion by splitting header fields over frames (6.0.x backport)

Added by OISF Ticketbot 3 months ago. Updated 2 months ago.

Status:
Closed
Priority:
Normal
Target version:
Affected Versions:
Label:
Git IDs:

ffed4b35cb8a0c4db586305239fe615dce0174a8

Severity:
LOW
Disclosure Date:
Actions #1

Updated by Victor Julien 3 months ago

  • Status changed from Assigned to Resolved
Actions #2

Updated by Victor Julien 3 months ago

  • CVE set to 2024-24568
  • Severity changed from MODERATE to LOW

LOW severity as in 6.0.x HTTP2 is considered experimental and disabled by default.

Actions #3

Updated by Philippe Antoine 3 months ago

  • Status changed from Resolved to Closed
  • Git IDs updated (diff)
Actions #4

Updated by Victor Julien 2 months ago

  • Private changed from Yes to No
Actions

Also available in: Atom PDF