You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
See doc/triage.md for instructions on how to triage this report.
modules:
- module: golang.org/x/net/http
versions:
- fixed: 0.0.0-20190813141303-74dc4d7220e7
packages:
- package: golang.org/x/net/http
description: Some HTTP/2 implementations are vulnerable to ping floods, potentially
leading to a denial of service. The attacker sends continual pings to an HTTP/2
peer, causing the peer to build an internal queue of responses. Depending on how
efficiently this data is queued, this can consume excess CPU, memory, or both.
cves:
- CVE-2019-9512
ghsas:
- GHSA-hgr8-6h9x-f7q9
The text was updated successfully, but these errors were encountered:
In GitHub Security Advisory GHSA-hgr8-6h9x-f7q9, there is a vulnerability in the following Go packages or modules:
Cross references:
See doc/triage.md for instructions on how to triage this report.
The text was updated successfully, but these errors were encountered: