Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-6332

Опубликовано: 03 дек. 2018
Источник: nvd
CVSS3: 5.9
CVSS3: 5.9
CVSS2: 4.3
EPSS Низкий

Описание

A potential denial-of-service issue in the Proxygen handling of invalid HTTP2 settings which can cause the server to spend disproportionate resources. This affects all supported versions of HHVM (3.24.3 and 3.21.7 and below) when using the proxygen server to handle HTTP2 requests.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:facebook:hhvm:*:*:*:*:*:*:*:*
Версия до 3.21.7 (включая)
cpe:2.3:a:facebook:hhvm:3.24.3:*:*:*:*:*:*:*

EPSS

Процентиль: 63%
0.00439
Низкий

5.9 Medium

CVSS3

5.9 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-400
CWE-19

Связанные уязвимости

CVSS3: 5.9
ubuntu
около 7 лет назад

A potential denial-of-service issue in the Proxygen handling of invalid HTTP2 settings which can cause the server to spend disproportionate resources. This affects all supported versions of HHVM (3.24.3 and 3.21.7 and below) when using the proxygen server to handle HTTP2 requests.

CVSS3: 5.9
debian
около 7 лет назад

A potential denial-of-service issue in the Proxygen handling of invali ...

CVSS3: 5.9
github
больше 3 лет назад

A potential denial-of-service issue in the Proxygen handling of invalid HTTP2 settings which can cause the server to spend disproportionate resources. This affects all supported versions of HHVM (3.24.3 and 3.21.7 and below) when using the proxygen server to handle HTTP2 requests.

EPSS

Процентиль: 63%
0.00439
Низкий

5.9 Medium

CVSS3

5.9 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-400
CWE-19