Security Advisory

CVE-2024-2653

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-04-03 17:18:29
Last updated 2025-11-04 18:29:43
Assigner certcc
CVSS score not scored
State PUBLISHED

Description

amphp/http will collect CONTINUATION frames in an unbounded buffer and will not check a limit until it has received the set END_HEADERS flag, resulting in an OOM crash.