VYPR

rpm package

suse/python-h2&distro=SUSE Linux Enterprise Server 16.0

pkg:rpm/suse/python-h2&distro=SUSE%20Linux%20Enterprise%20Server%2016.0

Vulnerabilities (1)

  • CVE-2025-57804MedAug 25, 2025
    affected < 4.2.0-160000.3.1fixed 4.2.0-160000.3.1

    h2 is a pure-Python implementation of a HTTP/2 protocol stack. Prior to version 4.3.0, an HTTP/2 request splitting vulnerability allows attackers to perform request smuggling attacks by injecting CRLF characters into headers. This occurs when servers downgrade HTTP/2 requests to