Rapid7 Vulnerability & Exploit Database

SUSE: CVE-2019-9512: SUSE Linux Security Advisory

Back to Search

SUSE: CVE-2019-9512: SUSE Linux Security Advisory

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:C)
Published
08/13/2019
Created
08/29/2019
Added
08/27/2019
Modified
02/04/2022

Description

Some HTTP/2 implementations are vulnerable to ping floods, potentially leading to a denial of service. The attacker sends continual pings to an HTTP/2 peer, causing the peer to build an internal queue of responses. Depending on how efficiently this data is queued, this can consume excess CPU, memory, or both.

Solution(s)

  • suse-upgrade-firefox-atk-lang
  • suse-upgrade-firefox-gdk-pixbuf-lang
  • suse-upgrade-firefox-gdk-pixbuf-query-loaders
  • suse-upgrade-firefox-gdk-pixbuf-thumbnailer
  • suse-upgrade-firefox-gio-branding-upstream
  • suse-upgrade-firefox-glib2-lang
  • suse-upgrade-firefox-glib2-tools
  • suse-upgrade-firefox-gtk3-branding-upstream
  • suse-upgrade-firefox-gtk3-data
  • suse-upgrade-firefox-gtk3-immodule-amharic
  • suse-upgrade-firefox-gtk3-immodule-inuktitut
  • suse-upgrade-firefox-gtk3-immodule-multipress
  • suse-upgrade-firefox-gtk3-immodule-thai
  • suse-upgrade-firefox-gtk3-immodule-vietnamese
  • suse-upgrade-firefox-gtk3-immodule-xim
  • suse-upgrade-firefox-gtk3-immodules-tigrigna
  • suse-upgrade-firefox-gtk3-lang
  • suse-upgrade-firefox-gtk3-tools
  • suse-upgrade-firefox-libatk-1_0-0
  • suse-upgrade-firefox-libcairo-gobject2
  • suse-upgrade-firefox-libcairo2
  • suse-upgrade-firefox-libffi4
  • suse-upgrade-firefox-libffi7
  • suse-upgrade-firefox-libgdk_pixbuf-2_0-0
  • suse-upgrade-firefox-libgtk-3-0
  • suse-upgrade-firefox-libharfbuzz0
  • suse-upgrade-firefox-libpango-1_0-0
  • suse-upgrade-go1-11
  • suse-upgrade-go1-11-doc
  • suse-upgrade-go1-11-race
  • suse-upgrade-go1-12
  • suse-upgrade-go1-12-doc
  • suse-upgrade-go1-12-race
  • suse-upgrade-libfirefox-gio-2_0-0
  • suse-upgrade-libfirefox-glib-2_0-0
  • suse-upgrade-libfirefox-gmodule-2_0-0
  • suse-upgrade-libfirefox-gobject-2_0-0
  • suse-upgrade-libfirefox-gthread-2_0-0
  • suse-upgrade-libfreebl3
  • suse-upgrade-libfreebl3-32bit
  • suse-upgrade-libsoftokn3
  • suse-upgrade-libsoftokn3-32bit
  • suse-upgrade-mozilla-nspr
  • suse-upgrade-mozilla-nspr-32bit
  • suse-upgrade-mozilla-nspr-devel
  • suse-upgrade-mozilla-nss
  • suse-upgrade-mozilla-nss-32bit
  • suse-upgrade-mozilla-nss-certs
  • suse-upgrade-mozilla-nss-certs-32bit
  • suse-upgrade-mozilla-nss-devel
  • suse-upgrade-mozilla-nss-tools
  • suse-upgrade-mozillafirefox
  • suse-upgrade-mozillafirefox-branding-sled
  • suse-upgrade-mozillafirefox-translations-common
  • suse-upgrade-mozillafirefox-translations-other
  • suse-upgrade-nodejs10
  • suse-upgrade-nodejs10-devel
  • suse-upgrade-nodejs10-docs
  • suse-upgrade-nodejs12
  • suse-upgrade-nodejs12-devel
  • suse-upgrade-nodejs12-docs
  • suse-upgrade-nodejs8
  • suse-upgrade-nodejs8-devel
  • suse-upgrade-nodejs8-docs
  • suse-upgrade-npm10
  • suse-upgrade-npm12
  • suse-upgrade-npm8
  • suse-upgrade-python3-twisted

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;