An HTTP/2 implementation flaw allows a denial-of-service ...
Moderate severity
Unreviewed
Published
Aug 13, 2025
to the GitHub Advisory Database
•
Updated Aug 13, 2025
Description
Published by the National Vulnerability Database
Aug 13, 2025
Published to the GitHub Advisory Database
Aug 13, 2025
Last updated
Aug 13, 2025
An HTTP/2 implementation flaw allows a denial-of-service (DoS) that uses malformed HTTP/2 control frames in order to break the max concurrent streams limit (HTTP/2 MadeYouReset Attack).
Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
References