Описание
ELSA-2024-2564: mod_http2 security update (MODERATE)
[2.0.26-2]
- Resolves: RHEL-31855 - mod_http2: httpd: CONTINUATION frames DoS (CVE-2024-27316)
[2.0.26-1]
- Resolves: RHEL-14691 - mod_http2 rebase to 2.0.26
Обновленные пакеты
Oracle Linux 9
Oracle Linux aarch64
mod_http2
2.0.26-2.el9_4
Oracle Linux x86_64
mod_http2
2.0.26-2.el9_4
Связанные CVE
Связанные уязвимости
HTTP/2 incoming headers exceeding the limit are temporarily buffered in nghttp2 in order to generate an informative HTTP 413 response. If a client does not stop sending headers, this leads to memory exhaustion.
HTTP/2 incoming headers exceeding the limit are temporarily buffered in nghttp2 in order to generate an informative HTTP 413 response. If a client does not stop sending headers, this leads to memory exhaustion.
HTTP/2 incoming headers exceeding the limit are temporarily buffered in nghttp2 in order to generate an informative HTTP 413 response. If a client does not stop sending headers, this leads to memory exhaustion.
HTTP/2 incoming headers exceeding the limit are temporarily buffered i ...