Ubuntu Security Notice USN-7058-1

Discussion in 'News Aggregator' started by Packet Storm, 10 Oct 2024.

  1. Packet Storm

    Packet Storm Guest

    Ubuntu Security Notice 7058-1 - Brennan Conroy discovered that the .NET Kestrel web server did not properly handle closing HTTP/3 streams under certain circumstances. An attacker could possibly use this issue to achieve remote code execution. This vulnerability only impacted Ubuntu 22.04 LTS and Ubuntu 24.04 LTS. It was discovered that .NET components designed to process malicious input were susceptible to hash flooding attacks. An attacker could possibly use this issue to cause a denial of service, resulting in a crash.

    Continue reading...
     

Share This Page

Loading...