CVE-2019-9512 log
| Source |
|
| Severity | Medium |
| Remote | Yes |
| Type | Denial of service |
| Description | An issue has been found in several HTTP/2 implementations, where the attacker sends continual pings to an HTTP/2 peer, causing the peer to build an internal queue of responses. Depending on how efficiently this data is queued, this can consume excess CPU, memory, or both, potentially leading to a denial of service. |
| Group | Package | Affected | Fixed | Severity | Status | Ticket |
|---|---|---|---|---|---|---|
| AVG-1021 | go | 2:1.12.7-1 | 2:1.12.8-1 | Medium | Fixed | |
| AVG-1020 | go-pie | 2:1.12.7-1 | 2:1.12.8-1 | Medium | Fixed |
| Date | Advisory | Group | Package | Severity | Type |
|---|---|---|---|---|---|
| 24 Aug 2019 | ASA-201908-16 | AVG-1020 | go-pie | Medium | multiple issues |
| 24 Aug 2019 | ASA-201908-15 | AVG-1021 | go | Medium | multiple issues |
| References |
|---|
https://github.com/Netflix/security-bulletins/blob/master/advisories/third-party/2019-002.md |