Ubuntu Security Notice USN-6718-1

Discussion in 'News Aggregator' started by Packet Storm, 28 Mar 2024.

  1. Packet Storm

    Packet Storm Guest

    Ubuntu Security Notice 6718-1 - Dan Fandrich discovered that curl would incorrectly use the default set of protocols when a parameter option disabled all protocols without adding any, contrary to expectations. This issue only affected Ubuntu 23.10. It was discovered that curl incorrectly handled memory when limiting the amount of headers when HTTP/2 server push is allowed. A remote attacker could possibly use this issue to cause curl to consume resources, leading to a denial of service.

    Continue reading...
     

Share This Page

Loading...