Some HTTP/2 implementations are vulnerable to a reset flood, potentially leading to a denial of service. The attacker opens a number of streams and sends an invalid request over each stream that should solicit a stream of RSTSTREAM frames from the peer. Depending on how the peer queues the RSTSTREAM frames, this can consume excess memory, CPU, or both.
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "17.9.0-2ubuntu0.1", "binary_name": "python-twisted" }, { "binary_version": "17.9.0-2ubuntu0.1", "binary_name": "python-twisted-bin" }, { "binary_version": "17.9.0-2ubuntu0.1", "binary_name": "python-twisted-bin-dbg" }, { "binary_version": "1:17.9.0-2ubuntu0.1", "binary_name": "python-twisted-conch" }, { "binary_version": "17.9.0-2ubuntu0.1", "binary_name": "python-twisted-core" }, { "binary_version": "17.9.0-2ubuntu0.1", "binary_name": "python-twisted-mail" }, { "binary_version": "17.9.0-2ubuntu0.1", "binary_name": "python-twisted-names" }, { "binary_version": "17.9.0-2ubuntu0.1", "binary_name": "python-twisted-news" }, { "binary_version": "17.9.0-2ubuntu0.1", "binary_name": "python-twisted-runner" }, { "binary_version": "17.9.0-2ubuntu0.1", "binary_name": "python-twisted-runner-dbg" }, { "binary_version": "17.9.0-2ubuntu0.1", "binary_name": "python-twisted-web" }, { "binary_version": "17.9.0-2ubuntu0.1", "binary_name": "python-twisted-words" }, { "binary_version": "17.9.0-2ubuntu0.1", "binary_name": "python3-twisted" }, { "binary_version": "17.9.0-2ubuntu0.1", "binary_name": "python3-twisted-bin" }, { "binary_version": "17.9.0-2ubuntu0.1", "binary_name": "python3-twisted-bin-dbg" }, { "binary_version": "17.9.0-2ubuntu0.1", "binary_name": "twisted-doc" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "2.2.5+dfsg2-3", "binary_name": "h2o" }, { "binary_version": "2.2.5+dfsg2-3", "binary_name": "h2o-dbgsym" }, { "binary_version": "2.2.5+dfsg2-3", "binary_name": "h2o-doc" }, { "binary_version": "2.2.5+dfsg2-3", "binary_name": "libh2o-dev" }, { "binary_version": "2.2.5+dfsg2-3", "binary_name": "libh2o-dev-common" }, { "binary_version": "2.2.5+dfsg2-3", "binary_name": "libh2o-evloop-dev" }, { "binary_version": "2.2.5+dfsg2-3", "binary_name": "libh2o-evloop0.13" }, { "binary_version": "2.2.5+dfsg2-3", "binary_name": "libh2o-evloop0.13-dbgsym" }, { "binary_version": "2.2.5+dfsg2-3", "binary_name": "libh2o0.13" }, { "binary_version": "2.2.5+dfsg2-3", "binary_name": "libh2o0.13-dbgsym" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "10.19.0~dfsg-3ubuntu1", "binary_name": "libnode-dev" }, { "binary_version": "10.19.0~dfsg-3ubuntu1", "binary_name": "libnode64" }, { "binary_version": "10.19.0~dfsg-3ubuntu1", "binary_name": "libnode64-dbgsym" }, { "binary_version": "10.19.0~dfsg-3ubuntu1", "binary_name": "nodejs" }, { "binary_version": "10.19.0~dfsg-3ubuntu1", "binary_name": "nodejs-dbgsym" }, { "binary_version": "10.19.0~dfsg-3ubuntu1", "binary_name": "nodejs-doc" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "8.0.5+ds-1", "binary_name": "trafficserver" }, { "binary_version": "8.0.5+ds-1", "binary_name": "trafficserver-dbgsym" }, { "binary_version": "8.0.5+ds-1", "binary_name": "trafficserver-dev" }, { "binary_version": "8.0.5+ds-1", "binary_name": "trafficserver-experimental-plugins" }, { "binary_version": "8.0.5+ds-1", "binary_name": "trafficserver-experimental-plugins-dbgsym" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "18.9.0-6ubuntu1", "binary_name": "python-twisted" }, { "binary_version": "18.9.0-6ubuntu1", "binary_name": "python-twisted-bin" }, { "binary_version": "18.9.0-6ubuntu1", "binary_name": "python-twisted-bin-dbg" }, { "binary_version": "1:18.9.0-6ubuntu1", "binary_name": "python-twisted-conch" }, { "binary_version": "18.9.0-6ubuntu1", "binary_name": "python-twisted-core" }, { "binary_version": "18.9.0-6ubuntu1", "binary_name": "python-twisted-mail" }, { "binary_version": "18.9.0-6ubuntu1", "binary_name": "python-twisted-names" }, { "binary_version": "18.9.0-6ubuntu1", "binary_name": "python-twisted-news" }, { "binary_version": "18.9.0-6ubuntu1", "binary_name": "python-twisted-runner" }, { "binary_version": "18.9.0-6ubuntu1", "binary_name": "python-twisted-runner-dbg" }, { "binary_version": "18.9.0-6ubuntu1", "binary_name": "python-twisted-web" }, { "binary_version": "18.9.0-6ubuntu1", "binary_name": "python-twisted-words" }, { "binary_version": "18.9.0-6ubuntu1", "binary_name": "python3-twisted" }, { "binary_version": "18.9.0-6ubuntu1", "binary_name": "python3-twisted-bin" }, { "binary_version": "18.9.0-6ubuntu1", "binary_name": "python3-twisted-bin-dbg" }, { "binary_version": "18.9.0-6ubuntu1", "binary_name": "twisted-doc" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "12.22.9~dfsg-1ubuntu3", "binary_name": "libnode-dev" }, { "binary_version": "12.22.9~dfsg-1ubuntu3", "binary_name": "libnode72" }, { "binary_version": "12.22.9~dfsg-1ubuntu3", "binary_name": "libnode72-dbgsym" }, { "binary_version": "12.22.9~dfsg-1ubuntu3", "binary_name": "nodejs" }, { "binary_version": "12.22.9~dfsg-1ubuntu3", "binary_name": "nodejs-dbgsym" }, { "binary_version": "12.22.9~dfsg-1ubuntu3", "binary_name": "nodejs-doc" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "18.13.0+dfsg1-1ubuntu2", "binary_name": "libnode-dev" }, { "binary_version": "18.13.0+dfsg1-1ubuntu2", "binary_name": "libnode108" }, { "binary_version": "18.13.0+dfsg1-1ubuntu2", "binary_name": "libnode108-dbgsym" }, { "binary_version": "18.13.0+dfsg1-1ubuntu2", "binary_name": "nodejs" }, { "binary_version": "18.13.0+dfsg1-1ubuntu2", "binary_name": "nodejs-dbgsym" }, { "binary_version": "18.13.0+dfsg1-1ubuntu2", "binary_name": "nodejs-doc" } ] }