--- vuln.xml Thu Jul 2 13:51:54 2020 +++ vuln.xml Thu Jul 2 14:03:28 2020 @@ -60,0 +61,26 @@ + + trafficserver -- resource consumption + + + trafficserver + 8.0.8 + + + + +

Bryan Call reports:

+
+

ATS is vulnerable to certain types of HTTP/2 HEADERS frames that can cause the server to allocate a large amount of memory and spin the thread.

+
+ +
+ + https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-9494 + CVE-2020-9494 + + + 2020-06-24 + 2020-07-02 + +
+