Loading HuntDB...

CVE-2018-11763

UNKNOWN
Published 2018-09-25T21:00:00Z
Actions:
No CVSS data available

Description

In Apache HTTP Server 2.4.17 to 2.4.34, by sending continuous, large SETTINGS frames a client can occupy a connection, server thread and CPU time without any connection timeout coming to effect. This affects only HTTP/2 connections. A possible mitigation is to not enable the h2 protocol.

Available Exploits

No exploits available for this CVE.

Related News

No news articles found for this CVE.

Affected Products

References

Published: 2018-09-25T21:00:00Z
Last Modified: 2024-09-17T02:21:55.083Z
Copied to clipboard!