Vulnerabilities (CVE)

Filtered by vendor Nghttp2 Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2015-8659 2 Apple, Nghttp2 5 Iphone Os, Mac Os X, Tvos and 2 more 2019-03-08 10.0 HIGH 10.0 CRITICAL
The idle stream handling in nghttp2 before 1.6.0 allows attackers to have unspecified impact via unknown vectors, aka a heap-use-after-free bug.