Some HTTP/2 implementations are vulnerable to a settings flood, potentially leading to a denial of service. The attacker sends a stream of SETTINGS frames to the peer. Since the RFC requires that the peer reply with one acknowledgement per SETTINGS frame, an empty SETTINGS frame is almost equivalent in behavior to a ping. Depending on how efficiently this data is queued, this can consume excess CPU, memory, or both.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HApache Traffic Server
APPApache7.0.0 – 7.1.68.0.0 – 8.0.36.0.0 – 6.2.3Apple Mac Os X
OSApple≥ 10.12Apple Swiftnio
APPApple1.0.0 – 1.4.0Canonical Ubuntu
OSCanonical16.0418.0419.04≥ 14.04Debian
OSDebian10.09.0F5 Big Ip Local Traffic Manager
APPF511.6.1 – 11.6.5.1 (excl.)12.1.0 – 12.1.5.1 (excl.)13.1.0 – 13.1.3.2 (excl.)14.0.0 – 14.0.1.1 (excl.)14.1.0 – 14.1.2.1 (excl.)15.0.0 – 15.0.1.1 (excl.)Fedora Project Fedora
OSFedoraproject2930Mcafee Web Gateway
APPMcafee7.7.2.0 – 7.7.2.24 (excl.)7.8.2.0 – 7.8.2.13 (excl.)8.1.0 – 8.2.0 (excl.)Node.js
APPNodejs8.0.0 – 8.8.112.0.0 – 12.8.1 (excl.)10.13.0 – 10.16.3 (excl.)10.0.0 – 10.12.08.9.0 – 8.16.1 (excl.)Opensuse Leap
OSOpensuse15.015.1Oracle Graalvm
APPOracle19.2.0Red Hat Enterprise Linux
OSRedhat8.0Red Hat Jboss Core Services
APPRedhat1.0Red Hat Jboss Enterprise Application Platform
APPRedhat7.2.07.3.0Red Hat OpenShift Container Platform
APPRedhat4.1Red Hat Openshift Service Mesh
APPRedhat1.0Red Hat Openstack
APPRedhat14Red Hat Quay
APPRedhat3.0.0Red Hat Single Sign On
APPRedhat7.3Red Hat Software Collections
APPRedhat1.0Synology Diskstation Manager
OSSynology6.2Synology Skynas
APPSynologyall versionsSynology Vs960hd
HWSynologyall versionsSynology Vs960hd Firmware
OSSynologyall versions
Related vulnerabilities
GNU Inetutils telnetd: ominięcie uwierzytelnienia przez zmienną USER
Sudo: eskalacja uprawnień do root poprzez opcję --chroot (CVE-2025-32463)
RCE przez deserializację PHP w Roundcube Webmail (parametr _from)
Erlang/OTP SSH — nieuwierzytelniony RCE (CVSS 10.0)
Apple WebKit: out-of-bounds write umożliwiający ucieczkę z sandbox przeglądarki