imPC@ndo IT

Tracker / CVE-2018-1333

CVE-2018-1333

High 7.5

By specially crafting HTTP/2 requests, workers would be allocated 60 seconds longer than necessary, leading to worker exhaustion and a denial of service. Fixed in Apache HTTP Server 2.4.34 (Affected 2.4.18-2.4.30,2.4.33).

Affected products and versions

apache http_server
apache http_server · 2.4.18 → 2.4.30
canonical ubuntu_linux
netapp cloud_backup
netapp storage_automation_store
redhat jboss_core_services

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References