Asymmetric denial of service - ReDoS In github.com/traefik/traefik
Description
Traefik vulnerable to HTTP/2 request causing denial of service
Impact
A vulnerability CVE-2023-39325 exists in Go managing HTTP/2 requests, which impacts Traefik. This vulnerability could be exploited to cause a denial of service.
References
Patches
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Component | Affected version | Patched versions |
|---|---|---|---|
go | 2.10.5, 3.0.0-beta4 |
Aliases
1. 2. 3. 4. 5. 6.
References
1. 2.