Learn about Centmin Mod LEMP Stack today
Register Now

Security multiple Denial of Service (DoS) vulnerabilities were disclosed for a number of HTTP/2 server implem

Discussion in 'System Administration' started by rdan, Aug 14, 2019.

  1. rdan

    rdan Well-Known Member

    5,452
    1,418
    113
    May 25, 2014
    Ratings:
    +2,212
    Local Time:
    5:13 PM
    Mainline
    10.2
    Today, multiple Denial of Service (DoS) vulnerabilities were disclosed for a number of HTTP/2 server implementations. Cloudflare uses NGINX for HTTP/2. Customers using Cloudflare are already protected against these attacks.

    The individual vulnerabilities, originally discovered by Netflix and are included in this announcement are:



    https://github.com/Netflix/security-bulletins/blob/master/advisories/third-party/2019-002.md

    https://blog.cloudflare.com/on-the-recent-http-2-dos-attacks/
     
  2. rdan

    rdan Well-Known Member

    5,452
    1,418
    113
    May 25, 2014
    Ratings:
    +2,212
    Local Time:
    5:13 PM
    Mainline
    10.2
  3. eva2000

    eva2000 Administrator Staff Member

    58,894
    12,490
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +19,122
    Local Time:
    7:13 PM
    Nginx 1.31.x
    MariaDB 10.x/11.4+/12.3+
  4. eva2000

    eva2000 Administrator Staff Member

    58,894
    12,490
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +19,122
    Local Time:
    7:13 PM
    Nginx 1.31.x
    MariaDB 10.x/11.4+/12.3+