Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-45797

Опубликовано: 16 окт. 2024
Источник: debian
EPSS Низкий

Описание

LibHTP is a security-aware parser for the HTTP protocol and the related bits and pieces. Prior to version 0.5.49, unbounded processing of HTTP request and response headers can lead to excessive CPU time and memory utilization, possibly leading to extreme slowdowns. This issue is addressed in 0.5.49.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libhtpfixed1:0.5.49-1package
libhtpfixed1:0.5.42-1+deb12u1bookwormpackage

Примечания

  • https://github.com/OISF/libhtp/security/advisories/GHSA-rqqp-24ch-248f

  • https://redmine.openinfosecfoundation.org/issues/7191

EPSS

Процентиль: 61%
0.00416
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 1 года назад

LibHTP is a security-aware parser for the HTTP protocol and the related bits and pieces. Prior to version 0.5.49, unbounded processing of HTTP request and response headers can lead to excessive CPU time and memory utilization, possibly leading to extreme slowdowns. This issue is addressed in 0.5.49.

CVSS3: 7.5
nvd
больше 1 года назад

LibHTP is a security-aware parser for the HTTP protocol and the related bits and pieces. Prior to version 0.5.49, unbounded processing of HTTP request and response headers can lead to excessive CPU time and memory utilization, possibly leading to extreme slowdowns. This issue is addressed in 0.5.49.

EPSS

Процентиль: 61%
0.00416
Низкий