VDB

BDU%3A2023-06559

BDU%3A2023-06559 PUBLISHED CVSS 7.800000190734863 HIGH

Уязвимость реализации протокола HTTP/2, связанная с возможностью формирования потока запросов в рамках уже установленного сетевого соединения, без открытия новых сетевых соединений и без подтверждения получения пакетов, позволяющая нарушителю вызвать отказ в обслуживании

Risk Scores

CVSS 2.0
7.800000190734863

Affected Products

VendorProductVersions
Microsoft Corp, ООО «РусБИТех-Астра», Novell Inc., Red Hat Inc., Сообщество свободного программного обеспечения, ООО «Ред Софт», АО «ИВК», Canonical Ltd., АО «НТЦ ИТ РОСА», Fedora Project, Willy Terreau, The Go Project, Google Inc, Eclipse Foundation, Apache Software Foundation, NGINX Inc., АО "НППКТ", Axiom JDK, ООО «Открытая мобильная платформа», ООО "Веб-Сервер"Windows 10 1607, Windows Server 2016, Windows Server 2016 (Server Core installation), Windows 10 1809, Windows Server 2019, Windows Server 2019 (Server Core installation), Astra Linux Special Edition (запись в едином реестре российских программ №369), SUSE Linux Enterprise Server for SAP Applications, OpenSUSE Leap, Suse Linux Enterprise Server, SUSE Linux Enterprise High Performance Computing, SUSE Linux Enterprise Module for Web Scripting, Red Hat Enterprise Linux, SUSE Linux Enterprise Software Development Kit, OpenShift Container Platform, H2O, Debian GNU/Linux, openSUSE Tumbleweed, SUSE CaaS Platform, Openshift Service Mesh, Windows Server 2022, Windows Server 2022 (Server Core installation), РЕД ОС (запись в едином реестре российских программ №3751), Windows 10 21H2, SUSE Manager Proxy, SUSE Manager Server, ASP.NET Core, SUSE Linux Enterprise Micro, Альт 8 СП (запись в едином реестре российских программ №4305), Suse Linux Enterprise Desktop, SUSE Manager Retail Branch Server, Ubuntu, Red Hat OpenStack Platform, SUSE Linux Enterprise Module for Basesystem, SUSE Linux Enterprise Module for Development Tools, Microsoft Visual Studio 2022, Windows 11 22H2, Windows 10 22H2, openSUSE Leap Micro, .NET, Windows 11 21H2, Red Hat Ceph Storage, РОСА Кобальт (запись в едином реестре российских программ №1999), Fedora, SUSE Package Hub, SUSE Linux Enterprise Module for Public Cloud, ROSA Virtualization (запись в едином реестре российских программ №5091), РОСА ХРОМ (запись в едином реестре российских программ №1607), SUSE Linux Enterprise Module for Package Hub, Envoy, Cryostat, HAProxy, Go, gRPC, Jetty, netty, nghttp2, Tomcat, Traffic Server, NGINX Plus, NGINX Open Source, NGINX Ingress Controller, АЛЬТ СП 10, ОСОН ОСнова Оnyx (запись в едином реестре российских программ №5913), SUSE Liberty Linux, SUSE Linux Enterprise Module for Containers, SUSE Linux Enterprise Module for Server Applications, SUSE Linux Enterprise Module for Python 3, ROSA Virtualization 3.0 (запись в едином реестре российских программ №21308), Libercat Certified (запись в едином реестре российских программ №22725; 9208), SUSE Linux Micro, Fedora EPEL, ОС Аврора (запись в едином реестре российских программ №1543), Angie, Angie PRO

Timeline

  • Oct 11, 2023 CVE Published
  • Dec 18, 2025 CVE Updated
  • Mar 19, 2026 Distribution Patch
  • Mar 19, 2026 Security Advisory
  • Mar 19, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›