Facebook Proxygen 2017.01.23.00

CPE Details

Facebook Proxygen 2017.01.23.00
2017.01.23.00
2019-07-29
12h07 +00:00
2019-07-29
12h07 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:facebook:proxygen:2017.01.23.00:*:*:*:*:*:*:*

Informations

Vendor

facebook

Product

proxygen

Version

2017.01.23.00

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-44487 2023-10-10 00h00 +00:00 The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
7.5
High
CVE-2021-24029 2021-03-15 20h15 +00:00 A packet of death scenario is possible in mvfst via a specially crafted message during a QUIC session, which causes a crash via a failed assertion. Per QUIC specification, this particular message should be treated as a connection error. This issue affects mvfst versions prior to commit a67083ff4b8dcbb7ee2839da6338032030d712b0 and proxygen versions prior to v2021.03.15.00.
7.5
High
CVE-2020-1897 2020-05-18 19h30 +00:00 A use-after-free is possible due to an error in lifetime management in the request adaptor when a malicious client invokes request error handling in a specific sequence. This issue affects versions of proxygen prior to v2020.05.18.00.
9.8
Critical
CVE-2019-11940 2019-12-04 15h30 +00:00 In the course of decompressing HPACK inside the HTTP2 protocol, an unexpected sequence of header table resize operations can place the header table into a corrupted state, leading to a use-after-free condition and undefined behavior. This issue affects Proxygen from v0.29.0 until v2017.04.03.00.
9.8
Critical
CVE-2019-11921 2019-07-25 18h38 +00:00 An out of bounds write is possible via a specially crafted packet in certain configurations of Proxygen due to improper handling of Base64 when parsing malformed binary content in Structured HTTP Headers. This issue affects versions of proxygen prior to v2019.07.22.00.
9.8
Critical