[FEDORA-2019-81985a8858] Fedora 30: nghttp2

Severity High
Affected Packages 1
CVEs 2
  • update to the latest upstream release (fixes CVE-2019-9511 and CVE-2019-9513)
Package Affected Version
pkg:rpm/fedora/nghttp2?distro=fedora-30 < 1.39.2.1.fc30
Source # ID Name URL
Bugzilla 1742011 Bug #1742011 - CVE-2019-9513 nghttp2: HTTP/2: flood using PRIORITY frames resulting in excessive resource consumption [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1742011
Bugzilla 1741947 Bug #1741947 - CVE-2019-9511 HTTP/2: large amount of data request leads to denial of service [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1741947
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/fedora/nghttp2?distro=fedora-30 fedora nghttp2 < 1.39.2.1.fc30 fedora-30
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...