Skip to content

CVE-2019-9515: Settings flood

High
Lukasa published GHSA-hv27-vjg3-m59x Aug 13, 2019 · 1 comment

Package

swift swift-nio-http2 (Swift)

Affected versions

>=1.0.0,<1.5.0

Patched versions

1.5.0

Description

Impact

Denial of service attack on HTTP/2 servers.

Patches

Available in 1.5.0.

Workarounds

There is no meaningful workaround without upgrading.

Severity

High

CVE ID

CVE-2019-9515

Weaknesses

No CWEs