VYPR

quic-go

by Lucas Clemente

CVEs (1)

  • CVE-2022-30591HigJul 6, 2022
    risk 0.49cvss 7.5epss 0.03

    quic-go through 0.27.0 allows remote attackers to cause a denial of service (CPU consumption) via a Slowloris variant in which incomplete QUIC or HTTP/3 requests are sent. This occurs because mtu_discoverer.go misparses the MTU Discovery service and consequently overflows the…