AppleGHSA-jchv-x857-q8fq
HTTP/2 Server Denial of Service Risks
HighPublished Aug 13, 2019
This is an umbrella advisory for a family of associated security releases. There are specific sub-advisories for each CVE. ### Impact Denial of service attack on HTTP/2 servers. ### Patches Available in 1.5.0. ### Workarounds There is no meaningful workaround without applying these patches.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| swift-nio-http2 Product | >= 1.0.0, < 1.5.0 | 1.5.0 |
Details and references
- Severity from
- GitHub (reviewed advisory)
More Apple advisories
All Apple| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Nov 252019 | Executable Stack | Medium | 2.4.1 |
| Aug 132019 | Apple: denial of service | High | 1.5.0 |
| Aug 132019 | Apple: denial of service | High | 1.5.0 |
| Aug 132019 | Apple: denial of service | High | 1.5.0 |
| Aug 132019 | Apple: denial of service | High | 1.5.0 |
| Aug 132019 | Apple: denial of service | High | 1.5.0 |