|
|
Log in / Subscribe / Register

apache: denial of service

Package(s):apache httpd CVE #(s):CVE-2016-1546
Created:October 7, 2016 Updated:October 12, 2016
Description: From the CVE entry:

The Apache HTTP Server 2.4.17 and 2.4.18, when mod_http2 is enabled, does not limit the number of simultaneous stream workers for a single HTTP/2 connection, which allows remote attackers to cause a denial of service (stream-processing outage) via modified flow-control windows.

Alerts:
Gentoo 201610-02 apache 2016-10-06

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds