logo

Database

Asymmetric denial of service In github.com/traefik/traefik

Description

Traefik vulnerable to HTTP/2 request causing denial of service

Impact

A vulnerability CVE-2023-39325 exists in Go managing HTTP/2 requests, which impacts Traefik. This vulnerability could be exploited to cause a denial of service.

References

Patches

Mitigation

Update Impact

Minimal update. May introduce new vulnerabilities or breaking changes.

Ecosystem
Component
Affected version
Patched versions
FLAT-TY9DV – Vulnerability | Fluid Attacks Database