Access of Uninitialized Pointer in h2o - CVE-2023-30847
Published: April 27, 2023
h2o
h2o
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to access to uninitialized pointer when processing certain type of invalid HTTP request. A remote attacker can send a specially crafted HTTP request and perform a denial of service (DoS) attack or leak information to back end HTTP servers.