Malformed request header may cause route matchers or access controls to be
bypassed, resulting in escalation of privileges or information disclosure
(CVE-2019-18802).
- https://bugs.mageia.org/show_bug.cgi?id=26361
- http://lists.suse.com/pipermail/sle-security-updates/2020-March/006627.html
- https://www.cve.org/CVERecord?id=CVE-2019-18802
- 7/core/nghttp2-1.38.0-1.2.mga7
Get the latest Linux and open source security news straight to your inbox.