H2o

Quicly

5 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.28%
  • Veröffentlicht 16.07.2026 22:44:34
  • Zuletzt bearbeitet 21.07.2026 19:25:26

Quicly is an IETF QUIC protocol implementation intended primarily for use within the H2O HTTP server. Prior to commit 8b178e6, Quicly is vulnerable to a Denial of Service attack through connection state corruption. In QUIC Invariants, the maximum len...

  • EPSS 0.28%
  • Veröffentlicht 16.07.2026 22:39:50
  • Zuletzt bearbeitet 06.08.2026 13:46:55

Quicly is an IETF QUIC protocol implementation intended primarily for use within the H2O HTTP server. Prior to commit 937d0e9, an assertion failure is raised when the total number of valid handshake messages received over a CRYPTO stream of a single ...

  • EPSS 0.15%
  • Veröffentlicht 16.07.2026 22:34:09
  • Zuletzt bearbeitet 06.08.2026 13:57:50

Quicly is an IETF QUIC protocol implementation intended primarily for use within the H2O HTTP server. Prior to commit dccf5d4, Quicly was vulnerable to stateless reset injection through lack of packet entry validation. The QUIC protocol is designed t...

  • EPSS 0.28%
  • Veröffentlicht 16.07.2026 22:23:17
  • Zuletzt bearbeitet 06.08.2026 14:08:31

Quicly is an IETF QUIC protocol implementation intended primarily for use within the H2O HTTP server. Prior to commit 8b178e6, an adversarial peer could send a STREAM frame carrying just one byte at the largest offset being permitted to obtain additi...

  • EPSS 0.35%
  • Veröffentlicht 19.01.2026 15:18:11
  • Zuletzt bearbeitet 27.02.2026 19:41:05

Quicly, an IETF QUIC protocol implementation, is susceptible to a denial-of-service attack prior to commit d9d3df6a8530a102b57d840e39b0311ce5c9e14e. A remote attacker can exploit these bugs to trigger an assertion failure that crashes process using Q...