CVE Database
/

CVE-2019-11940

Back to search

CVE-2019-11940

Published: Dec 4, 2019

Modified: Aug 4, 2024

PUBLISHED

Description

In the course of decompressing HPACK inside the HTTP2 protocol, an unexpected sequence of header table resize operations can place the header table into a corrupted state, leading to a use-after-free condition and undefined behavior. This issue affects Proxygen from v0.29.0 until v2017.04.03.00.

VendorProductVersions

Facebook

Proxygen

affected
v2017.04.03.00
affected
v0.29.0 - < unspecified
unaffected
unspecified - < v0.29.0

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now