Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2024-31079

Опубликовано: 29 мая 2024
Источник: redhat
CVSS3: 6.5
EPSS Низкий

Описание

When NGINX Plus or NGINX OSS are configured to use the HTTP/3 QUIC module, undisclosed HTTP/3 requests can cause NGINX worker processes to terminate or cause other potential impact. This attack requires that a request be specifically timed during the connection draining process, which the attacker has no visibility and limited influence over.

A flaw was found in the nginx HTTP/3 implementation. Undisclosed HTTP/3 requests can trigger a stack-based buffer overflow, causing worker processes to crash and lead to a denial of service.

Отчет

To exploit this flaw, a request must be specifically timed during the connection draining process, which the attacker has no visibility and limited influence. For this reason, this flaw has been rated with a Moderate severity. The nginx package as shipped in Red Hat Enterprise Linux 8, 9 and RHSCL is not affected by this vulnerability because the support for HTTP/3 is not enabled and the vulnerable code was introduced in a later version of nginx.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Ansible Automation Platform 1.2nginxNot affected
Red Hat Enterprise Linux 8nginx:1.22/nginxNot affected
Red Hat Enterprise Linux 8nginx:1.24/nginxNot affected
Red Hat Enterprise Linux 9nginxNot affected
Red Hat Enterprise Linux 9nginx:1.22/nginxNot affected
Red Hat Enterprise Linux 9nginx:1.24/nginxNot affected
Red Hat Software Collectionsrh-nginx118-nginxNot affected
Red Hat Software Collectionsrh-nginx120-nginxNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-121
https://bugzilla.redhat.com/show_bug.cgi?id=2283940nginx: undisclosed HTTP/3 requests can cause NGINX worker processes to terminate

EPSS

Процентиль: 68%
0.00585
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.8
ubuntu
около 1 года назад

When NGINX Plus or NGINX OSS are configured to use the HTTP/3 QUIC module, undisclosed HTTP/3 requests can cause NGINX worker processes to terminate or cause other potential impact. This attack requires that a request be specifically timed during the connection draining process, which the attacker has no visibility and limited influence over.

CVSS3: 4.8
nvd
около 1 года назад

When NGINX Plus or NGINX OSS are configured to use the HTTP/3 QUIC module, undisclosed HTTP/3 requests can cause NGINX worker processes to terminate or cause other potential impact. This attack requires that a request be specifically timed during the connection draining process, which the attacker has no visibility and limited influence over.

CVSS3: 4.8
debian
около 1 года назад

When NGINX Plus or NGINX OSS are configured to use the HTTP/3 QUIC mod ...

CVSS3: 6.5
fstec
около 1 года назад

Уязвимость модуля HTTP/3 QUIC (ngx_http_v3_module) веб-серверов NGINX Plus и NGINX OSS, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
redos
11 месяцев назад

Множественные уязвимости nginx

EPSS

Процентиль: 68%
0.00585
Низкий

6.5 Medium

CVSS3