Lucene search
Basic search
Lucene search
Search by product
Subscribe
K
Start 30-day trial
Database
Vendors
Products
Years
CVSS
Scanner
Agent Scanning
API Scanning
Manual Audit
Perimeter Scanner
Scanning
Projects
Email
Webhook
Plugins
Resources
Documents
Blog
Glossary
FAQ
Pricing
Contacts
About Us
Partners
Branding Guideline
SIGN IN
OracleLinux
ELSA-2023-5989
History
Oct 24, 2023 - 12:00 a.m.
Vulners
/
Oraclelinux
/
varnish security update
varnish security update
2023-10-24
00:00:00
linux.oracle.com
5
varnish
security update
parameters
cve-2023-44487
varnish-modules
unix
8.1 High
AI Score
Confidence
High
0.732 High
EPSS
Percentile
98.1%
JSON
varnish
[6.0.8-3.1]
Add parameters h2_rst_allowance and h2_rst_allowance_period to mitigate CVE-2023-44487
varnish-modules
Affected Package
OS
Version
Architecture
Package
Version
Filename
oracle linux
8
src
varnish
< 6.0.8-3.module
varnish-6.0.8-3.module+el8.8.0+21197+bdc2c048.1.src.rpm
oracle linux
8
src
varnish-modules
< 0.15.0-6.module
varnish-modules-0.15.0-6.module+el8.5.0+20320+0b4af72d.src.rpm
oracle linux
8
src
varnish-modules
< 0.15.0-6.module
varnish-modules-0.15.0-6.module+el8.5.0+20320+0b4af72d.src.rpm
oracle linux
8
aarch64
varnish
< 6.0.8-3.module
varnish-6.0.8-3.module+el8.8.0+21197+bdc2c048.1.aarch64.rpm
oracle linux
8
aarch64
varnish-devel
< 6.0.8-3.module
varnish-devel-6.0.8-3.module+el8.8.0+21197+bdc2c048.1.aarch64.rpm
oracle linux
8
aarch64
varnish-docs
< 6.0.8-3.module
varnish-docs-6.0.8-3.module+el8.8.0+21197+bdc2c048.1.aarch64.rpm
oracle linux
8
aarch64
varnish-modules
< 0.15.0-6.module
varnish-modules-0.15.0-6.module+el8.5.0+20320+0b4af72d.aarch64.rpm
oracle linux
8
aarch64
varnish-modules
< 0.15.0-6.module
varnish-modules-0.15.0-6.module+el8.5.0+20320+0b4af72d.aarch64.rpm
oracle linux
8
src
varnish
< 6.0.8-3.module
varnish-6.0.8-3.module+el8.8.0+21197+bdc2c048.1.src.rpm
oracle linux
8
src
varnish-modules
< 0.15.0-6.module
varnish-modules-0.15.0-6.module+el8.5.0+20320+0b4af72d.src.rpm
Rows per page:
10
1-10 of 16
1
Related
rocky 5
fedora 15
cbl_mariner 22
osv 17
openvas 35
amazon 1
redos 1
almalinux 9
nessus 47
veracode 1
ibm 9
oraclelinux 5
atlassian 3
github 2
debian 2
redhat 18
githubexploit 1
talosblog 1
impervablog 1
nvd 1
cisa_kev 1
hivepro 1
cnvd 1
alpinelinux 1
rocky
rocky
5
varnish security update
2023-10-24 18:36:42
varnish security update
2023-10-24 18:35:47
nodejs security update
2023-10-24 18:36:46
fedora
fedora
15
[SECURITY] Fedora 39 Update: proxygen-2023.10.16.00-1.fc39
2023-11-03 19:01:54
[SECURITY] Fedora 38 Update: fbthrift-2023.10.16.00-1.fc38
2023-10-24 01:23:49
[SECURITY] Fedora 38 Update: wangle-2023.10.16.00-1.fc38
2023-10-24 01:23:49
cbl_mariner
cbl_mariner
22
CVE-2023-44487 affecting package moby-containerd-cc for versions less than 1.7.1-5
2024-02-09 19:07:07
CVE-2023-44487 affecting package vitess for versions less than 16.0.2-5
2024-02-09 19:07:07
CVE-2023-44487 affecting package terraform for versions less than 1.3.2-11
2024-02-09 19:07:07
osv
osv
17
BIT-nginx-ingress-controller-2023-44487
2023-11-06 08:56:48
dotnet8 vulnerability
2023-10-19 15:57:27
github.com/nghttp2/nghttp2 has HTTP/2 Rapid Reset
2023-10-10 18:23:21
openvas
openvas
35
Huawei EulerOS: Security Advisory for nghttp2 (EulerOS-SA-2024-1092)
2024-01-09 00:00:00
Huawei EulerOS: Security Advisory for nghttp2 (EulerOS-SA-2024-1365)
2024-03-14 00:00:00
openSUSE: Security Advisory for netty, netty (SUSE-SU-2023:4163-1)
2024-03-04 00:00:00
amazon
amazon
Important: nghttp2
2023-10-16 13:45:00
redos
redos
ROS-20231107-01
2023-11-07 00:00:00
almalinux
almalinux
9
Important: dotnet6.0 security update
2023-10-16 00:00:00
Important: nghttp2 security update
2023-10-18 00:00:00
Important: varnish security update
2023-10-19 00:00:00
nessus
nessus
47
Oracle Linux 9 : varnish (ELSA-2023-5924)
2023-10-24 00:00:00
AlmaLinux 9 : .NET 7.0 (ALSA-2023:5749)
2023-10-17 00:00:00
SUSE SLES12 Security Update : nghttp2 (SUSE-SU-2023:4199-1)
2023-10-27 00:00:00
veracode
veracode
Denial Of Service (DoS)
2023-10-12 14:37:40
ibm
ibm
9
Security Bulletin: IBM Storage Ceph is vulnerable to Uncontrolled Resource Consumption in Grafana (CVE-2023-44487)
2024-01-26 22:15:52
Security Bulletin: IBM WebSphere Application Server Liberty, which is bundled with IBM Cloud Pak for Applications, is vulnerable to denial of service due to HTTP/2 Rapid Reset vulnerability (CVE-2023-44487)
2023-11-15 20:45:34
Security Bulletin: IBM Storage Protect is vulnerable to multiple attacks due to http2-server and http2-common (CVE-2023-44487)
2023-12-15 16:30:18
oraclelinux
oraclelinux
5
.NET 7.0 security update
2023-10-18 00:00:00
nghttp2 security update
2023-11-16 00:00:00
nodejs security update
2023-10-20 00:00:00
atlassian
atlassian
DoS (Denial of Service) io.netty:netty-codec-http2 in Confluence Data Center and Server
2023-11-03 00:45:12
DoS (Denial of Service) org.apache.tomcat:tomcat-coyote Vulnerability in Crowd Data Center and Server
2023-11-22 06:44:58
DoS (Denial of Service) org.apache.tomcat:tomcat-coyote in Bamboo Data Center and Server
2023-11-10 01:44:55
github
github
HTTP/2 Stream Cancellation Attack
2023-10-10 21:28:24
github.com/nghttp2/nghttp2 has HTTP/2 Rapid Reset
2023-10-10 18:23:21
debian
debian
[SECURITY] [DLA 3638-1] h2o security update
2023-10-31 14:09:23
[SECURITY] [DLA 3617-2] tomcat9 regression update
2023-10-16 22:23:23
redhat
redhat
18
(RHSA-2023:5713) Moderate: nginx:1.22 security update
2023-10-16 08:06:40
(RHSA-2023:7334) Important: rh-varnish6-varnish security update
2023-11-16 14:38:00
(RHSA-2023:6105) Important: Red Hat JBoss Core Services Apache HTTP Server 2.4.57 SP1 security update
2023-10-26 13:19:00
githubexploit
githubexploit
Exploit for Uncontrolled Resource Consumption in Ietf Http
2023-12-11 23:12:03
talosblog
talosblog
Year in Malware 2023: Recapping the major cybersecurity stories of the past year
2023-12-19 13:00:18
impervablog
impervablog
HTTP/2 Rapid Reset Mitigation With Imperva WAF
2024-01-03 14:21:45
nvd
nvd
CVE-2023-44487
2023-10-10 14:15:10
cisa_kev
cisa_kev
HTTP/2 Rapid Reset Attack Vulnerability
2023-10-10 00:00:00
hivepro
hivepro
Attacks, Vulnerabilities and Actors 9 October to 15 October 2023
2023-10-17 09:10:10
cnvd
cnvd
F5 BIG-IP Denial of Service Vulnerability (CNVD-2023-75597)
2023-10-11 00:00:00
alpinelinux
alpinelinux
CVE-2023-44487
2023-10-10 14:15:10
8.1 High
AI Score
Confidence
High
0.732 High
EPSS
Percentile
98.1%
JSON
Related for ELSA-2023-5989
rocky
5
fedora
15
cbl_mariner
22
osv
17
openvas
35
amazon
1
redos
1
almalinux
9
nessus
47
veracode
1
ibm
9
oraclelinux
5
atlassian
3
github
2
debian
2
redhat
18
githubexploit
1
talosblog
1
impervablog
1
nvd
1
cisa_kev
1
hivepro
1
cnvd
1
alpinelinux
1