Lucene search

K
f5F5F5:K000139227
HistoryApr 09, 2024 - 12:00 a.m.

K000139227 : amphp/http vulnerability CVE-2024-2653

2024-04-0900:00:00
my.f5.com
23
amphp/http
vulnerability
oom crash

7 High

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

15.5%

Security Advisory Description

amphp/http will collect CONTINUATION frames in an unbounded buffer and will not check a limit until it has received the set END_HEADERS flag, resulting in an OOM crash. (CVE-2024-2653)

Impact

There is no impact; F5 products are not affected by this vulnerability.

7 High

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

15.5%