CVE-2024-23837

HIGH7.5EPSS 0.27%

libhtp - security update

Published: 2/26/2024Modified: 4/28/2026
Also known as:DEBIAN-CVE-2024-23837DEBIAN-CVE-2024-45797DLA-4295-1

Description

LibHTP is a security-aware parser for the HTTP protocol. Crafted traffic can cause excessive processing time of HTTP headers, leading to denial of service. This issue is addressed in 0.5.46.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH7.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

References (1)