VYPR
High severity7.5NVD Advisory· Published Dec 31, 2018· Updated Jun 17, 2026

CVE-2018-6343

CVE-2018-6343

Description

Proxygen fails to validate that a secondary auth manager is set before dereferencing it. That can cause a denial of service issue when parsing a Certificate/CertificateRequest HTTP2 Frame over a fizz (TLS 1.3) transport. This issue affects Proxygen releases starting from v2018.10.29.00 until the fix in v2018.11.19.00.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Facebook/Proxygen2 versions
    cpe:2.3:a:facebook:proxygen:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:facebook:proxygen:*:*:*:*:*:*:*:*range: >=2018.10.29.00,<2018.11.19.00
    • (no CPE)range: v2018.10.29.00 - v2018.11.19.00
  • Facebook/Proxygenv5
    Range: v2018.11.19.00

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.