FlawAtlas
Search the atlas
CVE-2023-26964 Not scored

CVE-2023-26964

An issue was discovered in hyper v0.13.7. h2-0.2.4 Stream stacking occurs when the H2 component processes HTTP2 RST_STREAM frames. As a result, the memory and CPU usage are high which can lead to a Denial of Service (DoS).

Exploit probability 1.1%
Published April 11, 2023
Required by Not available
Last source change July 16, 2026

02 / AFFECTED SOFTWARE

Affected packages

Unknown Unknown

4 explicit affected versions

03 / CONNECTIONS

Connected vulnerabilities

related OPENSUSE-SU-2024:0294-1
related OPENSUSE-SU-2024:12859-1
related OPENSUSE-SU-2024:12861-1
related OPENSUSE-SU-2024:12862-1
related OPENSUSE-SU-2024:12863-1
related OPENSUSE-SU-2024:12864-1
related OPENSUSE-SU-2024:12866-1
related OPENSUSE-SU-2024:12960-1
related OPENSUSE-SU-2024:12973-1
related OPENSUSE-SU-2024:13106-1
related SUSE-SU-2023:2603-1
related SUSE-SU-2025:02809-1
related SUSE-SU-2025:02810-1
related SUSE-SU-2025:02811-1

04 / EVIDENCE

Source records

Open Source Vulnerabilities CVE-2023-26964

An issue was discovered in hyper v0.13.7. h2-0.2.4 Stream stacking occurs when the H2 component processes HTTP2 RST_STREAM frames. As a result, the memory and CPU usage are high which can lead to a Denial of Service (DoS).

View original source

05 / REFERENCES

Further evidence