FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2024-04-18 11:12:36 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
4da51989-5a8b-4eb9-b442-46d94ec0802dh2o -- Malformed HTTP/1.1 causes Out-of-Memory Denial of Service

Elijah Glover reports:

Malformed HTTP/1.1 requests can crash worker processes. occasionally locking up child workers and causing denial of service, and an outage dropping any open connections.


Discovery 2023-04-27
Entry 2023-04-30
h2o
le 2.2.6

h2o-devel
< 2.3.0.d.20230427

CVE-2023-30847
https://github.com/h2o/h2o/security/advisories/GHSA-p5hj-phwj-hrvx