SynScan
Home
How it works
Pricing
Vulnerability Database
Breach Intelligence
Search Data
Database Index
Contact
Try it now!
CVE-2016-1544
Last update: Apr 13, 2023
Description
nghttp2 before 1.7.1 allows remote attackers to cause a denial of service (memory exhaustion).
Affected Software
References
Software
From
Fixed in
fedoraproject / fedora
22
22.x
fedoraproject / fedora
23
23.x
nghttp2 / nghttp2
-
1.7.1
http://lists.fedoraproject.org/pipermail/package-announce/2016-February/177308.html
http://lists.fedoraproject.org/pipermail/package-announce/2016-February/177666.html
https://bugzilla.redhat.com/show_bug.cgi?id=1308461
https://github.com/nghttp2/nghttp2/compare/v1.7.0...v1.7.1
https://github.com/nghttp2/nghttp2/releases/tag/v1.7.1
https://security.gentoo.org/glsa/201612-13
Details
Severity:
Low
CVE:
CVE-2016-1544
Published:
Feb 6, 2020
Updated:
Apr 13, 2023
Exploit:
CVSS v3
Severity:
Low
Score
: 3.3
AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
CVSS v2
Severity:
Low
Score:
2.1
AV:L/AC:L/Au:N/C:N/I:N/A:P
CWEs
CWE-400