PT-2018-17482 · Facebook · Hhvm

CVE-2018-6332

·

Publicado

2018-12-03

·

Atualizado

2025-05-06

CVSS v3.1

5.9

Média

VetorAV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions HHVM versions 3.24.3 and 3.21.7 and below
Description A potential denial-of-service issue exists in the Proxygen handling of invalid HTTP2 settings, causing the server to spend disproportionate resources when handling HTTP2 requests using the proxygen server.
Recommendations For HHVM versions 3.24.3 and 3.21.7 and below, consider disabling the use of the proxygen server for handling HTTP2 requests as a temporary workaround until a patch is available. Restrict access to the proxygen server to minimize the risk of exploitation.

Correção

DoS

Resource Exhaustion

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-6332

Produtos afetados

Hhvm