USN-6505-1
Not scored
nghttp2 vulnerability
It was discovered that nghttp2 incorrectly handled request cancellation. A remote attacker could possibly use this issue to cause nghttp2 to consume resources, leading to a denial of service.
Exploit probability
Not scored
Published
November 22, 2023
Required by
Not available
Last source change
April 27, 2026
02 / AFFECTED SOFTWARE
Affected packages
4 explicit affected versions
4 explicit affected versions
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
Open Source Vulnerabilities
USN-6505-1
View original source
It was discovered that nghttp2 incorrectly handled request cancellation. A remote attacker could possibly use this issue to cause nghttp2 to consume resources, leading to a denial of service.
05 / REFERENCES