CVE-2018-11763
UNKNOWN
Published 2018-09-25T21:00:00Z
Actions:
No CVSS data available
Description
In Apache HTTP Server 2.4.17 to 2.4.34, by sending continuous, large SETTINGS frames a client can occupy a connection, server thread and CPU time without any connection timeout coming to effect. This affects only HTTP/2 connections. A possible mitigation is to not enable the h2 protocol.
Available Exploits
No exploits available for this CVE.
Related News
No news articles found for this CVE.
Affected Products
Affected Versions:
References
Published: 2018-09-25T21:00:00Z
Last Modified: 2024-09-17T02:21:55.083Z
Copied to clipboard!