From d487b54f718a978a65c74fcba94bcb97fd76ef69 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Adrian=20Schr=C3=B6ter?= Date: Tue, 20 Aug 2024 13:43:40 +0200 Subject: [PATCH] Adding patchinfo patchinfo.20240607091524749164.269002615871826 --- kernel-source-rt | 2 +- nghttp2 | 2 +- .../_patchinfo | 15 +++++++++++++++ 3 files changed, 17 insertions(+), 2 deletions(-) create mode 100644 patchinfo.20240607091524749164.269002615871826/_patchinfo diff --git a/kernel-source-rt b/kernel-source-rt index 7a509b7..3818ce3 160000 --- a/kernel-source-rt +++ b/kernel-source-rt @@ -1 +1 @@ -Subproject commit 7a509b7f42e0830575d2be1d42cb3ac0553af521 +Subproject commit 3818ce32aa2558fa363d1fb7d4148ba274ea0577 diff --git a/nghttp2 b/nghttp2 index 6609002..c01f2fb 160000 --- a/nghttp2 +++ b/nghttp2 @@ -1 +1 @@ -Subproject commit 660900224392ea44d432af6ec3ffe4c73a536d87 +Subproject commit c01f2fbb24acd7d5cb1e3af46ebd056ae8f264b8 diff --git a/patchinfo.20240607091524749164.269002615871826/_patchinfo b/patchinfo.20240607091524749164.269002615871826/_patchinfo new file mode 100644 index 0000000..393afd9 --- /dev/null +++ b/patchinfo.20240607091524749164.269002615871826/_patchinfo @@ -0,0 +1,15 @@ + + + VUL-0: CVE-2024-28182: nghttp2: HTTP/2 CONTINUATION frames can be utilized for DoS attacks + + pgajdos + important + security + Security update for nghttp2 + This update for nghttp2 fixes the following issues: + +- CVE-2024-28182: Fixed denial of service via http/2 continuation frames (bsc#1221399) + + nghttp2 + +