Skip to content

Prevent CVE-2023-39325 / CVE-2023-44487 HTTP/2 Rapid Reset Attack - #2527

Merged
aldas merged 1 commit into
labstack:masterfrom
stefanb:fix-CVE-2023-39325
Oct 11, 2023
Merged

Prevent CVE-2023-39325 / CVE-2023-44487 HTTP/2 Rapid Reset Attack#2527
aldas merged 1 commit into
labstack:masterfrom
stefanb:fix-CVE-2023-39325

Conversation

@stefanb

@stefanbstefanb commented Oct 11, 2023

Copy link
Copy Markdown
Contributor

@stefanbstefanb changed the title Fix CVE-2023-39325 / CVE-2023-44487Fix CVE-2023-39325 / CVE-2023-44487 HTTP/2 Rapid Reset AttackOct 11, 2023
@stefanbstefanb changed the title Fix CVE-2023-39325 / CVE-2023-44487 HTTP/2 Rapid Reset AttackPrevent CVE-2023-39325 / CVE-2023-44487 HTTP/2 Rapid Reset AttackOct 11, 2023
@aldas
aldas merged commit 5780908 into labstack:masterOct 11, 2023
@stefanb
stefanb deleted the fix-CVE-2023-39325 branch October 11, 2023 04:15
@stefanb

stefanb commented Oct 11, 2023

Copy link
Copy Markdown
ContributorAuthor

@aldas, it would probably make sense to tag a release, so that dependants can get the fix easier. But of course it all depends on the current state of the project (v4.11.1...master ).

@stefanbstefanb mentioned this pull request Oct 11, 2023
@aldas

Copy link
Copy Markdown
Contributor

@stefanb , I'll do it in couple of hours.

@aldasaldas mentioned this pull request Oct 11, 2023
@aldas

Copy link
Copy Markdown
Contributor

done, https://github.com/labstack/echo/releases/tag/v4.11.2

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@stefanb@aldas