Alerts This Week
Warning Icon 1 537
Alerts This Week
Warning Icon 1 537

Debian: DSA-4508-1 H2O Security Update for Denial Of Service

debian
Calendar Grey August 24, 2019
Debian Logo
Updated patches for three security weaknesses in the H2O web server have been implemented to guard against potential denial of service attacks in the stable release of Debian.
Three vulnerabilities were discovered in the HTTP/2 code of the H2O HTTP server, which could result in denial of service

Summary

Three vulnerabilities were discovered in the HTTP/2 code of the H2O HTTP
server, which could result in denial of service.

For the stable distribution (buster), these problems have been fixed in
version 2.2.5+dfsg2-2+deb10u1.

We recommend that you upgrade your h2o packages.

For the detailed security status of h2o please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/h2o

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
critical
Lowest
Low
Medium
High
Critical

Package: h2o
CVE ID: CVE-2019-9512 CVE-2019-9514 CVE-2019-9515

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here