Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-45797

Опубликовано: 16 окт. 2024
Источник: debian

Описание

LibHTP is a security-aware parser for the HTTP protocol and the related bits and pieces. Prior to version 0.5.49, unbounded processing of HTTP request and response headers can lead to excessive CPU time and memory utilization, possibly leading to extreme slowdowns. This issue is addressed in 0.5.49.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libhtpfixed1:0.5.49-1package
libhtpfixed1:0.5.42-1+deb12u1bookwormpackage

Примечания

  • https://github.com/OISF/libhtp/security/advisories/GHSA-rqqp-24ch-248f

  • https://redmine.openinfosecfoundation.org/issues/7191

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 2 года назад

LibHTP is a security-aware parser for the HTTP protocol and the related bits and pieces. Prior to version 0.5.49, unbounded processing of HTTP request and response headers can lead to excessive CPU time and memory utilization, possibly leading to extreme slowdowns. This issue is addressed in 0.5.49.

CVSS3: 7.5
nvd
почти 2 года назад

LibHTP is a security-aware parser for the HTTP protocol and the related bits and pieces. Prior to version 0.5.49, unbounded processing of HTTP request and response headers can lead to excessive CPU time and memory utilization, possibly leading to extreme slowdowns. This issue is addressed in 0.5.49.