Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2019:2264-1

Опубликовано: 06 окт. 2019
Источник: suse-cvrf

Описание

Security update for nginx

This update for nginx fixes the following issues:

Security issues fixed:

  • CVE-2019-9511: Fixed a denial of service by manipulating the window size and stream prioritization (bsc#1145579).
  • CVE-2019-9513: Fixed a denial of service caused by resource loops (bsc#1145580).
  • CVE-2019-9516: Fixed a denial of service caused by header leaks (bsc#1145582).

This update was imported from the SUSE:SLE-15:Update update project.

Список пакетов

openSUSE Leap 15.0
nginx-1.14.2-lp150.2.11.1
vim-plugin-nginx-1.14.2-lp150.2.11.1

Описание

Some HTTP/2 implementations are vulnerable to window size manipulation and stream prioritization manipulation, potentially leading to a denial of service. The attacker requests a large amount of data from a specified resource over multiple streams. They manipulate window size and stream priority to force the server to queue the data in 1-byte chunks. Depending on how efficiently this data is queued, this can consume excess CPU, memory, or both.


Затронутые продукты
openSUSE Leap 15.0:nginx-1.14.2-lp150.2.11.1
openSUSE Leap 15.0:vim-plugin-nginx-1.14.2-lp150.2.11.1

Ссылки

Описание

Some HTTP/2 implementations are vulnerable to resource loops, potentially leading to a denial of service. The attacker creates multiple request streams and continually shuffles the priority of the streams in a way that causes substantial churn to the priority tree. This can consume excess CPU.


Затронутые продукты
openSUSE Leap 15.0:nginx-1.14.2-lp150.2.11.1
openSUSE Leap 15.0:vim-plugin-nginx-1.14.2-lp150.2.11.1

Ссылки

Описание

Some HTTP/2 implementations are vulnerable to a header leak, potentially leading to a denial of service. The attacker sends a stream of headers with a 0-length header name and 0-length header value, optionally Huffman encoded into 1-byte or greater headers. Some implementations allocate memory for these headers and keep the allocation alive until the session dies. This can consume excess memory.


Затронутые продукты
openSUSE Leap 15.0:nginx-1.14.2-lp150.2.11.1
openSUSE Leap 15.0:vim-plugin-nginx-1.14.2-lp150.2.11.1

Ссылки