
Cloud Vulnerability DB
A community-led vulnerabilities database
RUSTSEC-2023-0002 was a vulnerability affecting the h2 crate in Rust, which is a HTTP/2 implementation. The vulnerability was related to a Denial of Service (DoS) attack through HTTP/2 Rapid Reset, similar to CVE-2023-44487. The issue allowed clients to send rapid stream resets that could overwhelm server resources (OSS Security).
The vulnerability involved the ability of clients to send rapid stream reset commands in HTTP/2 implementations. This was similar to Netflix's CVE-2019-9514 'Reset Flood' vulnerability, although in this case, the RST_STREAM commands were sent from the client side rather than the server side (OSS Security).
The vulnerability could lead to a Denial of Service (DoS) condition, potentially affecting server resources and availability of HTTP/2 services implemented using the h2 crate (OSS Security).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."