ELSA-2024-3501

ELSA-2024-3501 - nghttp2 security update

Type:SECURITY
Severity:MODERATE
Release Date:2024-06-20

Description


[1.43.0-5.2]
- fix CONTINUATION frames DoS (CVE-2024-28182, CVE-2024-27316)


Related CVEs


CVE-2024-28182

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) nghttp2-1.43.0-5.el9_4.3.src.rpm50eb507c98a21ee55e9e31338bcf53ff-ol9_aarch64_baseos_latest
nghttp2-1.43.0-5.el9_4.3.src.rpm50eb507c98a21ee55e9e31338bcf53ff-ol9_aarch64_codeready_builder
nghttp2-1.43.0-5.el9_4.3.src.rpm50eb507c98a21ee55e9e31338bcf53ff-ol9_aarch64_u4_baseos_patch
libnghttp2-1.43.0-5.el9_4.3.aarch64.rpm4c49c0c6a9077ab9d0687b6c2292884c-ol9_aarch64_baseos_latest
libnghttp2-1.43.0-5.el9_4.3.aarch64.rpm4c49c0c6a9077ab9d0687b6c2292884c-ol9_aarch64_u4_baseos_patch
libnghttp2-devel-1.43.0-5.el9_4.3.aarch64.rpm396a97b2b4b306fb6e4b22f8d60798d6-ol9_aarch64_codeready_builder
nghttp2-1.43.0-5.el9_4.3.aarch64.rpm6153c7e01c6677bab989477bd7c5637c-ol9_aarch64_codeready_builder
Oracle Linux 9 (x86_64) nghttp2-1.43.0-5.el9_4.3.src.rpm50eb507c98a21ee55e9e31338bcf53ff-ol9_x86_64_baseos_latest
nghttp2-1.43.0-5.el9_4.3.src.rpm50eb507c98a21ee55e9e31338bcf53ff-ol9_x86_64_codeready_builder
nghttp2-1.43.0-5.el9_4.3.src.rpm50eb507c98a21ee55e9e31338bcf53ff-ol9_x86_64_u4_baseos_patch
libnghttp2-1.43.0-5.el9_4.3.i686.rpmab3a04f18421cd64818fafa5889895fb-ol9_x86_64_baseos_latest
libnghttp2-1.43.0-5.el9_4.3.i686.rpmab3a04f18421cd64818fafa5889895fb-ol9_x86_64_u4_baseos_patch
libnghttp2-1.43.0-5.el9_4.3.x86_64.rpmd7b5809f47916bb9ad2eb52b8fceedb0-ol9_x86_64_baseos_latest
libnghttp2-1.43.0-5.el9_4.3.x86_64.rpmd7b5809f47916bb9ad2eb52b8fceedb0-ol9_x86_64_u4_baseos_patch
libnghttp2-devel-1.43.0-5.el9_4.3.i686.rpm0ef04a1944fc563c15c4eaabb5146b69-ol9_x86_64_codeready_builder
libnghttp2-devel-1.43.0-5.el9_4.3.x86_64.rpm824a34da30afef53c7adf97b2de0ecc4-ol9_x86_64_codeready_builder
nghttp2-1.43.0-5.el9_4.3.x86_64.rpm1b07caf3218c0597829aa4400b99f030-ol9_x86_64_codeready_builder



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete