Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Lowfasterthanlime

#48575of 53,625
5.1Total CVSS
Vulnerabilities · 1
PT-2024-34667
5.1
2024-11-04
Unknown · Loona-Hpack · CVE-2024-51502
**Name of the Vulnerable Software and Affected Versions** loona-hpack versions prior to 0.4.3 **Description** The issue affects users who try to decode untrusted input using the Decoder. All users who do this are vulnerable to the exploit. The problem is similar to the one documented in the original hpack issue #11. There are no known workarounds for this vulnerability. **Recommendations** For versions prior to 0.4.3, upgrade to release version 0.4.3 to address the issue. As a temporary workaround, consider avoiding the use of the Decoder with untrusted input until the upgrade is applied.