Vulnerability Watch

Forum Discussion

snarang's avatar
snarang
Product Team
6 years ago

Eight HTTP/2 Denial of Service (DoS) Vulnerabilities...

Eight HTTP/2 Denial of Service (DoS) Vulnerabilities Disclosed by Researchers

Researchers publicly disclosed eight vulnerabilities in HTTP/2, a major revision of the Web’s protocol on August 13. Netflix published an advisory for their GitHub page about the vulnerabilities, which were discovered by their Engineering Manager, Jonathan Looney, but one of which was discovered by Piotr Sikora, a Senior Software Engineer at Google.

The following is the list of CVEs and nicknames given to the vulnerabilities in the advisory.

Vulnerability in italics was discovered by Piotr Sikora.

For more information about these vulnerabilities, including Tenable product coverage, please visit our blog.