HTTP/2 Denial of Service Vulnerability: Stream Reset Exploit

HTTP/2 Denial of Service Vulnerability: Stream Reset Exploit

CVE-2023-44487 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.

Learn more about our Cis Benchmark Audit For Server Software.