PT-2018-17494 · Facebook · Proxygen

CVE-2018-6347

·

Published

2018-12-31

·

Updated

2025-05-06

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Proxygen versions prior to 2018.12.31.00
Description An issue in the Proxygen handling of HTTP2 parsing of headers/trailers can lead to a denial-of-service attack.
Recommendations For versions prior to 2018.12.31.00, update to version 2018.12.31.00 or later to resolve the issue.

Fix

DoS

Resource Exhaustion

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-6347

Affected Products

Proxygen