CVE-2018-1000168
nghttp2 version >= 1.10.0 and nghttp2 <= v1.31.0 contains an Improper Input Validation CWE-20 vulnerability in ALTSVC frame handling that can result in segmentation fault leading to denial of service.
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 10.6%, higher than 96% of all known CVEs. Patch or mitigate before the next change window.
Description
nghttp2 version >= 1.10.0 and nghttp2 <= v1.31.0 contains an Improper Input Validation CWE-20 vulnerability in ALTSVC frame handling that can result in segmentation fault leading to denial of service. This attack appears to be exploitable via network client. This vulnerability appears to have been fixed in >= 1.31.1.
- CVSS 3.1
- 7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 10.65% probability · 96th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-20, CWE-476
- Affected
- nghttp2/nghttp2 · nodejs/node.js · debian/debian linux
- Source
- cve@mitre.org
References
- http://www.securityfocus.com/bid/103952Broken Link, Third Party Advisory, VDB Entry
- https://access.redhat.com/errata/RHSA-2019:0366Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:0367Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2021/10/msg00011.htmlMailing List, Third Party Advisory
- https://nghttp2.org/blog/2018/04/12/nghttp2-v1-31-1/Vendor Advisory
- https://nodejs.org/en/blog/vulnerability/june-2018-security-releases/Release Notes, Third Party Advisory
- http://www.securityfocus.com/bid/103952Broken Link, Third Party Advisory, VDB Entry
- https://access.redhat.com/errata/RHSA-2019:0366Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:0367Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2021/10/msg00011.htmlMailing List, Third Party Advisory
- https://nghttp2.org/blog/2018/04/12/nghttp2-v1-31-1/Vendor Advisory
- https://nodejs.org/en/blog/vulnerability/june-2018-security-releases/Release Notes, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.