VOOZH about

URL: https://nvd.nist.gov/vuln/detail/CVE-2019-9512

⇱ NVD - CVE-2019-9512


  1. Vulnerabilities

CVE-2019-9512 Detail

Modified After Enrichment

This CVE record has been updated after NVD enrichment efforts were completed. Enrichment data supplied by the NVD may require amendment due to these changes.

Description

Some HTTP/2 implementations are vulnerable to ping floods, potentially leading to a denial of service. The attacker sends continual pings to an HTTP/2 peer, causing the peer to build an internal queue of responses. Depending on how efficiently this data is queued, this can consume excess CPU, memory, or both.


Metrics

 
NVD enrichment efforts reference publicly available information to associate vector strings. CVSS information contributed by other sources is also displayed.
CVSS 4.0 Severity and Vector Strings:

NVD assessment not yet provided.

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving NIST webspace. We have provided these links to other web sites because they may have information that would be of interest to you. No inferences should be drawn on account of other sites being referenced, or not, from this page. There may be other web sites that are more appropriate for your purpose. NIST does not necessarily endorse the views expressed, or concur with the facts presented on these sites. Further, NIST does not endorse any commercial products that may be mentioned on these sites. Please address comments about this page to [email protected].

URL Source(s) Tag(s)
http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00076.html CERT/CC, CVE Mailing List  Third Party Advisory 
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00002.html CERT/CC, CVE Mailing List  Third Party Advisory 
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00011.html CERT/CC, CVE Mailing List  Third Party Advisory 
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00021.html CERT/CC, CVE Mailing List  Third Party Advisory 
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00031.html CERT/CC, CVE Mailing List  Third Party Advisory 
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00032.html CERT/CC, CVE Mailing List  Third Party Advisory 
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00038.html CERT/CC, CVE Mailing List  Third Party Advisory 
http://seclists.org/fulldisclosure/2019/Aug/16 CERT/CC, CVE Mailing List  Third Party Advisory 
http://www.openwall.com/lists/oss-security/2019/08/20/1 CERT/CC, CVE Mailing List  Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:2594 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:2661 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:2682 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:2690 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:2726 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:2766 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:2769 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:2796 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:2861 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:2925 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:2939 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:2955 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:2966 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:3131 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:3245 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:3265 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:3892 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:3906 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:4018 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:4019 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:4020 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:4021 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:4040 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:4041 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:4042 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:4045 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:4269 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:4273 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2019:4352 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2020:0406 CERT/CC, CVE Third Party Advisory 
https://access.redhat.com/errata/RHSA-2020:0727 CERT/CC, CVE Third Party Advisory 
https://github.com/Netflix/security-bulletins/blob/master/advisories/third-party/2019-002.md CERT/CC, CVE Third Party Advisory 
https://kb.cert.org/vuls/id/605641/ CERT/CC, CVE Third Party Advisory  US Government Resource 
https://kc.mcafee.com/corporate/index?page=content&id=SB10296 CERT/CC, CVE Third Party Advisory 
https://lists.apache.org/thread.html/392108390cef48af647a2e47b7fd5380e050e35ae8d1aa2030254c04%40%3Cusers.trafficserver.apache.org%3E CERT/CC, CVE
https://lists.apache.org/thread.html/ad3d01e767199c1aed8033bb6b3f5bf98c011c7c536f07a5d34b3c19%40%3Cannounce.trafficserver.apache.org%3E CERT/CC, CVE
https://lists.apache.org/thread.html/bde52309316ae798186d783a5e29f4ad1527f61c9219a289d0eee0a7%40%3Cdev.trafficserver.apache.org%3E CERT/CC, CVE
https://lists.debian.org/debian-lts-announce/2020/12/msg00011.html CERT/CC, CVE Mailing List  Third Party Advisory 
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4BBP27PZGSY6OP6D26E5FW4GZKBFHNU7/ CERT/CC, CVE
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4ZQGHE3WTYLYAYJEIDJVF2FIGQTAYPMC/ CERT/CC, CVE
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CMNFX5MNYRWWIMO4BTKYQCGUDMHO3AXP/ CERT/CC, CVE
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LYO6E3H34C346D2E443GLXK7OK6KIYIQ/ CERT/CC, CVE
https://seclists.org/bugtraq/2019/Aug/24 CERT/CC, CVE Mailing List  Third Party Advisory 
https://seclists.org/bugtraq/2019/Aug/31 CERT/CC, CVE Mailing List  Third Party Advisory 
https://seclists.org/bugtraq/2019/Aug/43 CERT/CC, CVE Mailing List  Third Party Advisory 
https://seclists.org/bugtraq/2019/Sep/18 CERT/CC, CVE Mailing List  Third Party Advisory 
https://security.netapp.com/advisory/ntap-20190823-0001/ CERT/CC, CVE Third Party Advisory 
https://security.netapp.com/advisory/ntap-20190823-0004/ CERT/CC, CVE Third Party Advisory 
https://security.netapp.com/advisory/ntap-20190823-0005/ CERT/CC, CVE Third Party Advisory 
https://support.f5.com/csp/article/K98053339 CERT/CC, CVE Third Party Advisory 
https://support.f5.com/csp/article/K98053339?utm_source=f5support&amp%3Butm_medium=RSS CERT/CC, CVE
https://usn.ubuntu.com/4308-1/ CERT/CC, CVE Third Party Advisory 
https://www.debian.org/security/2019/dsa-4503 CERT/CC, CVE Third Party Advisory 
https://www.debian.org/security/2019/dsa-4508 CERT/CC, CVE Third Party Advisory 
https://www.debian.org/security/2019/dsa-4520 CERT/CC, CVE Third Party Advisory 
https://www.synology.com/security/advisory/Synology_SA_19_33 CERT/CC, CVE Third Party Advisory 

Weakness Enumeration

CWE-ID CWE Name Source
CWE-400 Uncontrolled Resource Consumption πŸ‘ cwe source acceptance level
NIST  
CERT/CC  

Known Affected Software Configurations Switch to CPE 2.2

CPEs loading, please wait.

Denotes Vulnerable Software
Are we missing a CPE here? Please let us know.

Change History

53 change records found show changes

CVE Modified by CERT/CC 6/16/2026 10:43:51 PM

Action Type Old Value New Value
Added Affected
[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]


CVE Modified by CVE 11/20/2024 11:51:46 PM

Action Type Old Value New Value
Added Reference
http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00076.html


Added Reference
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00002.html


Added Reference
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00011.html


Added Reference
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00021.html


Added Reference
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00031.html


Added Reference
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00032.html


Added Reference
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00038.html


Added Reference
http://seclists.org/fulldisclosure/2019/Aug/16


Added Reference
http://www.openwall.com/lists/oss-security/2019/08/20/1


Added Reference
https://access.redhat.com/errata/RHSA-2019:2594


Added Reference
https://access.redhat.com/errata/RHSA-2019:2661


Added Reference
https://access.redhat.com/errata/RHSA-2019:2682


Added Reference
https://access.redhat.com/errata/RHSA-2019:2690


Added Reference
https://access.redhat.com/errata/RHSA-2019:2726


Added Reference
https://access.redhat.com/errata/RHSA-2019:2766


Added Reference
https://access.redhat.com/errata/RHSA-2019:2769


Added Reference
https://access.redhat.com/errata/RHSA-2019:2796


Added Reference
https://access.redhat.com/errata/RHSA-2019:2861


Added Reference
https://access.redhat.com/errata/RHSA-2019:2925


Added Reference
https://access.redhat.com/errata/RHSA-2019:2939


Added Reference
https://access.redhat.com/errata/RHSA-2019:2955


Added Reference
https://access.redhat.com/errata/RHSA-2019:2966


Added Reference
https://access.redhat.com/errata/RHSA-2019:3131


Added Reference
https://access.redhat.com/errata/RHSA-2019:3245


Added Reference
https://access.redhat.com/errata/RHSA-2019:3265


Added Reference
https://access.redhat.com/errata/RHSA-2019:3892


Added Reference
https://access.redhat.com/errata/RHSA-2019:3906


Added Reference
https://access.redhat.com/errata/RHSA-2019:4018


Added Reference
https://access.redhat.com/errata/RHSA-2019:4019


Added Reference
https://access.redhat.com/errata/RHSA-2019:4020


Added Reference
https://access.redhat.com/errata/RHSA-2019:4021


Added Reference
https://access.redhat.com/errata/RHSA-2019:4040


Added Reference
https://access.redhat.com/errata/RHSA-2019:4041


Added Reference
https://access.redhat.com/errata/RHSA-2019:4042


Added Reference
https://access.redhat.com/errata/RHSA-2019:4045


Added Reference
https://access.redhat.com/errata/RHSA-2019:4269


Added Reference
https://access.redhat.com/errata/RHSA-2019:4273


Added Reference
https://access.redhat.com/errata/RHSA-2019:4352


Added Reference
https://access.redhat.com/errata/RHSA-2020:0406


Added Reference
https://access.redhat.com/errata/RHSA-2020:0727


Added Reference
https://github.com/Netflix/security-bulletins/blob/master/advisories/third-party/2019-002.md


Added Reference
https://kb.cert.org/vuls/id/605641/


Added Reference
https://kc.mcafee.com/corporate/index?page=content&id=SB10296


Added Reference
https://lists.apache.org/thread.html/392108390cef48af647a2e47b7fd5380e050e35ae8d1aa2030254c04%40%3Cusers.trafficserver.apache.org%3E


Added Reference
https://lists.apache.org/thread.html/ad3d01e767199c1aed8033bb6b3f5bf98c011c7c536f07a5d34b3c19%40%3Cannounce.trafficserver.apache.org%3E


Added Reference
https://lists.apache.org/thread.html/bde52309316ae798186d783a5e29f4ad1527f61c9219a289d0eee0a7%40%3Cdev.trafficserver.apache.org%3E


Added Reference
https://lists.debian.org/debian-lts-announce/2020/12/msg00011.html


Added Reference
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4BBP27PZGSY6OP6D26E5FW4GZKBFHNU7/


Added Reference
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4ZQGHE3WTYLYAYJEIDJVF2FIGQTAYPMC/


Added Reference
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CMNFX5MNYRWWIMO4BTKYQCGUDMHO3AXP/


Added Reference
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LYO6E3H34C346D2E443GLXK7OK6KIYIQ/


Added Reference
https://seclists.org/bugtraq/2019/Aug/24


Added Reference
https://seclists.org/bugtraq/2019/Aug/31


Added Reference
https://seclists.org/bugtraq/2019/Aug/43


Added Reference
https://seclists.org/bugtraq/2019/Sep/18


Added Reference
https://security.netapp.com/advisory/ntap-20190823-0001/


Added Reference
https://security.netapp.com/advisory/ntap-20190823-0004/


Added Reference
https://security.netapp.com/advisory/ntap-20190823-0005/


Added Reference
https://support.f5.com/csp/article/K98053339


Added Reference
https://support.f5.com/csp/article/K98053339?utm_source=f5support&amp%3Butm_medium=RSS


Added Reference
https://usn.ubuntu.com/4308-1/


Added Reference
https://www.debian.org/security/2019/dsa-4503


Added Reference
https://www.debian.org/security/2019/dsa-4508


Added Reference
https://www.debian.org/security/2019/dsa-4520


Added Reference
https://www.synology.com/security/advisory/Synology_SA_19_33


CVE Modified by CERT/CC 5/14/2024 2:10:50 AM

Action Type Old Value New Value

CVE Modified by CERT/CC 11/06/2023 10:13:41 PM

Action Type Old Value New Value
Added Reference
CERT/CC https://lists.apache.org/thread.html/392108390cef48af647a2e47b7fd5380e050e35ae8d1aa2030254c04%40%3Cusers.trafficserver.apache.org%3E [No types assigned]


Added Reference
CERT/CC https://lists.apache.org/thread.html/ad3d01e767199c1aed8033bb6b3f5bf98c011c7c536f07a5d34b3c19%40%3Cannounce.trafficserver.apache.org%3E [No types assigned]


Added Reference
CERT/CC https://lists.apache.org/thread.html/bde52309316ae798186d783a5e29f4ad1527f61c9219a289d0eee0a7%40%3Cdev.trafficserver.apache.org%3E [No types assigned]


Added Reference
CERT/CC https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4BBP27PZGSY6OP6D26E5FW4GZKBFHNU7/ [No types assigned]


Added Reference
CERT/CC https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4ZQGHE3WTYLYAYJEIDJVF2FIGQTAYPMC/ [No types assigned]


Added Reference
CERT/CC https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CMNFX5MNYRWWIMO4BTKYQCGUDMHO3AXP/ [No types assigned]


Added Reference
CERT/CC https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LYO6E3H34C346D2E443GLXK7OK6KIYIQ/ [No types assigned]


Added Reference
CERT/CC https://support.f5.com/csp/article/K98053339?utm_source=f5support&amp%3Butm_medium=RSS [No types assigned]


Removed Reference
CERT/CC https://lists.apache.org/thread.html/392108390cef48af647a2e47b7fd5380e050e35ae8d1aa2030254c04@%3Cusers.trafficserver.apache.org%3E


Removed Reference
CERT/CC https://lists.apache.org/thread.html/ad3d01e767199c1aed8033bb6b3f5bf98c011c7c536f07a5d34b3c19@%3Cannounce.trafficserver.apache.org%3E


Removed Reference
CERT/CC https://lists.apache.org/thread.html/bde52309316ae798186d783a5e29f4ad1527f61c9219a289d0eee0a7@%3Cdev.trafficserver.apache.org%3E


Removed Reference
CERT/CC https://lists.fedoraproject.org/archives/list/[email protected]/message/4BBP27PZGSY6OP6D26E5FW4GZKBFHNU7/


Removed Reference
CERT/CC https://lists.fedoraproject.org/archives/list/[email protected]/message/4ZQGHE3WTYLYAYJEIDJVF2FIGQTAYPMC/


Removed Reference
CERT/CC https://lists.fedoraproject.org/archives/list/[email protected]/message/CMNFX5MNYRWWIMO4BTKYQCGUDMHO3AXP/


Removed Reference
CERT/CC https://lists.fedoraproject.org/archives/list/[email protected]/message/LYO6E3H34C346D2E443GLXK7OK6KIYIQ/


Removed Reference
CERT/CC https://support.f5.com/csp/article/K98053339?utm_source=f5support&utm_medium=RSS


Modified Analysis by NIST 8/12/2022 2:41:19 PM

Action Type Old Value New Value
Added CVSS V3.1
NIST AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H


Removed CVSS V3
NIST AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H


Added CPE Configuration
OR
 *cpe:2.3:a:nodejs:node.js:*:*:*:*:-:*:*:* versions from (including) 8.0.0 up to (including) 8.8.1
 *cpe:2.3:a:nodejs:node.js:*:*:*:*:lts:*:*:* versions from (including) 8.9.0 up to (excluding) 8.16.1
 *cpe:2.3:a:nodejs:node.js:*:*:*:*:-:*:*:* versions from (including) 10.0.0 up to (including) 10.12.0
 *cpe:2.3:a:nodejs:node.js:*:*:*:*:lts:*:*:* versions from (including) 10.13.0 up to (excluding) 10.16.3
 *cpe:2.3:a:nodejs:node.js:*:*:*:*:-:*:*:* versions from (including) 12.0.0 up to (excluding) 12.8.1


Changed Reference Type
http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00076.html No Types Assigned


http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00076.html Mailing List, Third Party Advisory


Changed Reference Type
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00002.html No Types Assigned


http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00002.html Mailing List, Third Party Advisory


Changed Reference Type
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00011.html No Types Assigned


http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00011.html Mailing List, Third Party Advisory


Changed Reference Type
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00021.html No Types Assigned


http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00021.html Mailing List, Third Party Advisory


Changed Reference Type
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00031.html No Types Assigned


http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00031.html Mailing List, Third Party Advisory


Changed Reference Type
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00032.html No Types Assigned


http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00032.html Mailing List, Third Party Advisory


Changed Reference Type
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00038.html No Types Assigned


http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00038.html Mailing List, Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:2594 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:2594 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:2661 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:2661 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:2682 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:2682 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:2690 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:2690 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:2726 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:2726 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:2766 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:2766 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:2769 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:2769 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:2796 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:2796 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:2861 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:2861 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:2925 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:2925 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:2939 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:2939 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:2955 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:2955 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:2966 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:2966 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:3131 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:3131 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:3245 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:3245 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:3265 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:3265 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:3892 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:3892 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:3906 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:3906 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:4018 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:4018 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:4019 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:4019 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:4020 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:4020 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:4021 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:4021 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:4040 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:4040 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:4041 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:4041 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:4042 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:4042 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:4045 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:4045 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:4269 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:4269 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:4273 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:4273 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2019:4352 No Types Assigned


https://access.redhat.com/errata/RHSA-2019:4352 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2020:0406 No Types Assigned


https://access.redhat.com/errata/RHSA-2020:0406 Third Party Advisory


Changed Reference Type
https://access.redhat.com/errata/RHSA-2020:0727 No Types Assigned


https://access.redhat.com/errata/RHSA-2020:0727 Third Party Advisory


Changed Reference Type
https://kc.mcafee.com/corporate/index?page=content&id=SB10296 No Types Assigned


https://kc.mcafee.com/corporate/index?page=content&id=SB10296 Third Party Advisory


Changed Reference Type
https://lists.debian.org/debian-lts-announce/2020/12/msg00011.html No Types Assigned


https://lists.debian.org/debian-lts-announce/2020/12/msg00011.html Mailing List, Third Party Advisory


Changed Reference Type
https://lists.fedoraproject.org/archives/list/[email protected]/message/4BBP27PZGSY6OP6D26E5FW4GZKBFHNU7/ No Types Assigned


https://lists.fedoraproject.org/archives/list/[email protected]/message/4BBP27PZGSY6OP6D26E5FW4GZKBFHNU7/ Mailing List, Third Party Advisory


Changed Reference Type
https://lists.fedoraproject.org/archives/list/[email protected]/message/4ZQGHE3WTYLYAYJEIDJVF2FIGQTAYPMC/ No Types Assigned


https://lists.fedoraproject.org/archives/list/[email protected]/message/4ZQGHE3WTYLYAYJEIDJVF2FIGQTAYPMC/ Mailing List, Third Party Advisory


Changed Reference Type
https://lists.fedoraproject.org/archives/list/[email protected]/message/CMNFX5MNYRWWIMO4BTKYQCGUDMHO3AXP/ No Types Assigned


https://lists.fedoraproject.org/archives/list/[email protected]/message/CMNFX5MNYRWWIMO4BTKYQCGUDMHO3AXP/ Mailing List, Third Party Advisory


Changed Reference Type
https://lists.fedoraproject.org/archives/list/[email protected]/message/LYO6E3H34C346D2E443GLXK7OK6KIYIQ/ No Types Assigned


https://lists.fedoraproject.org/archives/list/[email protected]/message/LYO6E3H34C346D2E443GLXK7OK6KIYIQ/ Mailing List, Third Party Advisory


Changed Reference Type
https://seclists.org/bugtraq/2019/Aug/43 No Types Assigned


https://seclists.org/bugtraq/2019/Aug/43 Mailing List, Third Party Advisory


Changed Reference Type
https://seclists.org/bugtraq/2019/Sep/18 No Types Assigned


https://seclists.org/bugtraq/2019/Sep/18 Mailing List, Third Party Advisory


Changed Reference Type
https://security.netapp.com/advisory/ntap-20190823-0001/ No Types Assigned


https://security.netapp.com/advisory/ntap-20190823-0001/ Third Party Advisory


Changed Reference Type
https://security.netapp.com/advisory/ntap-20190823-0004/ No Types Assigned


https://security.netapp.com/advisory/ntap-20190823-0004/ Third Party Advisory


Changed Reference Type
https://security.netapp.com/advisory/ntap-20190823-0005/ No Types Assigned


https://security.netapp.com/advisory/ntap-20190823-0005/ Third Party Advisory


Changed Reference Type
https://support.f5.com/csp/article/K98053339?utm_source=f5support&utm_medium=RSS No Types Assigned


https://support.f5.com/csp/article/K98053339?utm_source=f5support&utm_medium=RSS Third Party Advisory


Changed Reference Type
https://usn.ubuntu.com/4308-1/ No Types Assigned


https://usn.ubuntu.com/4308-1/ Third Party Advisory


Changed Reference Type
https://www.debian.org/security/2019/dsa-4508 No Types Assigned


https://www.debian.org/security/2019/dsa-4508 Third Party Advisory


Changed Reference Type
https://www.debian.org/security/2019/dsa-4520 No Types Assigned


https://www.debian.org/security/2019/dsa-4520 Third Party Advisory


CVE Modified by CERT/CC 12/08/2020 7:15:12 PM

Action Type Old Value New Value
Added Reference
https://lists.debian.org/debian-lts-announce/2020/12/msg00011.html [No Types Assigned]


CVE Modified by CERT/CC 3/30/2020 6:15:14 PM

Action Type Old Value New Value
Added Reference
https://usn.ubuntu.com/4308-1/ [No Types Assigned]


CVE Modified by CERT/CC 3/11/2020 6:29:02 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2020:0727 [No Types Assigned]


CVE Modified by CERT/CC 2/04/2020 7:15:13 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2020:0406 [No Types Assigned]


CVE Modified by CERT/CC 12/19/2019 5:15:15 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:4352 [No Types Assigned]


CVE Modified by CERT/CC 12/17/2019 9:15:19 AM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:4269 [No Types Assigned]


Added Reference
https://access.redhat.com/errata/RHSA-2019:4273 [No Types Assigned]


CVE Modified by CERT/CC 12/02/2019 4:15:17 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:4040 [No Types Assigned]


Added Reference
https://access.redhat.com/errata/RHSA-2019:4041 [No Types Assigned]


Added Reference
https://access.redhat.com/errata/RHSA-2019:4042 [No Types Assigned]


Added Reference
https://access.redhat.com/errata/RHSA-2019:4045 [No Types Assigned]


CVE Modified by CERT/CC 11/26/2019 6:15:12 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:4018 [No Types Assigned]


Added Reference
https://access.redhat.com/errata/RHSA-2019:4019 [No Types Assigned]


Added Reference
https://access.redhat.com/errata/RHSA-2019:4020 [No Types Assigned]


Added Reference
https://access.redhat.com/errata/RHSA-2019:4021 [No Types Assigned]


CVE Modified by CERT/CC 11/18/2019 4:15:12 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:3906 [No Types Assigned]


CVE Modified by CERT/CC 11/14/2019 7:15:12 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:3892 [No Types Assigned]


CVE Modified by CERT/CC 10/30/2019 7:15:10 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:3265 [No Types Assigned]


CVE Modified by CERT/CC 10/29/2019 5:15:11 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:3245 [No Types Assigned]


CVE Modified by CERT/CC 10/24/2019 7:15:14 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:2769 [No Types Assigned]


CVE Modified by CERT/CC 10/16/2019 2:15:37 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:3131 [No Types Assigned]


CVE Modified by CERT/CC 10/09/2019 4:15:32 PM

Action Type Old Value New Value
Added CVSS V3
CERT/CC AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H


Added CWE
CERT/CC CWE-400


Added Reference
https://support.f5.com/csp/article/K98053339?utm_source=f5support&utm_medium=RSS [No Types Assigned]


CVE Modified by CERT/CC 10/03/2019 7:15:12 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:2966 [No Types Assigned]


CVE Modified by CERT/CC 10/02/2019 1:15:12 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:2955 [No Types Assigned]


CVE Modified by CERT/CC 9/30/2019 10:15:14 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:2939 [No Types Assigned]


CVE Modified by CERT/CC 9/30/2019 6:15:10 AM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:2925 [No Types Assigned]


CVE Modified by CERT/CC 9/26/2019 4:15:11 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:2861 [No Types Assigned]


CVE Modified by CERT/CC 9/19/2019 1:15:13 AM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:2796 [No Types Assigned]


CVE Modified by CERT/CC 9/14/2019 2:15:11 PM

Action Type Old Value New Value
Added Reference
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00038.html [No Types Assigned]


CVE Modified by CERT/CC 9/12/2019 6:15:11 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:2766 [No Types Assigned]


CVE Modified by CERT/CC 9/11/2019 3:15:12 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:2690 [No Types Assigned]


CVE Modified by CERT/CC 9/11/2019 5:15:11 AM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:2661 [No Types Assigned]


Added Reference
https://kc.mcafee.com/corporate/index?page=content&id=SB10296 [No Types Assigned]


CVE Modified by CERT/CC 9/10/2019 8:15:11 PM

Action Type Old Value New Value
Added Reference
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00031.html [No Types Assigned]


Added Reference
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00032.html [No Types Assigned]


CVE Modified by CERT/CC 9/10/2019 3:15:10 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:2594 [No Types Assigned]


CVE Modified by CERT/CC 9/10/2019 2:15:13 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:2726 [No Types Assigned]


Added Reference
https://seclists.org/bugtraq/2019/Sep/18 [No Types Assigned]


CVE Modified by CERT/CC 9/10/2019 7:15:11 AM

Action Type Old Value New Value
Added Reference
https://www.debian.org/security/2019/dsa-4520 [No Types Assigned]


CVE Modified by CERT/CC 9/10/2019 2:15:10 AM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2019:2682 [No Types Assigned]


CVE Modified by CERT/CC 9/07/2019 5:15:10 PM

Action Type Old Value New Value
Added Reference
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00021.html [No Types Assigned]


CVE Modified by CERT/CC 9/06/2019 11:15:13 AM

Action Type Old Value New Value
Added Reference
https://lists.fedoraproject.org/archives/list/[email protected]/message/4BBP27PZGSY6OP6D26E5FW4GZKBFHNU7/ [No Types Assigned]


Added Reference
https://lists.fedoraproject.org/archives/list/[email protected]/message/LYO6E3H34C346D2E443GLXK7OK6KIYIQ/ [No Types Assigned]


CVE Modified by CERT/CC 9/05/2019 11:15:14 AM

Action Type Old Value New Value
Added Reference
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00011.html [No Types Assigned]


CVE Modified by CERT/CC 9/02/2019 2:15:11 PM

Action Type Old Value New Value
Added Reference
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00002.html [No Types Assigned]


CVE Modified by CERT/CC 8/26/2019 11:15:13 AM

Action Type Old Value New Value
Added Reference
https://www.debian.org/security/2019/dsa-4508 [No Types Assigned]


CVE Modified by CERT/CC 8/26/2019 4:15:10 AM

Action Type Old Value New Value
Added Reference
https://seclists.org/bugtraq/2019/Aug/43 [No Types Assigned]


CVE Modified by CERT/CC 8/25/2019 1:15:11 AM

Action Type Old Value New Value
Added Reference
https://lists.fedoraproject.org/archives/list/[email protected]/message/4ZQGHE3WTYLYAYJEIDJVF2FIGQTAYPMC/ [No Types Assigned]


CVE Modified by CERT/CC 8/24/2019 11:15:10 PM

Action Type Old Value New Value
Added Reference
https://lists.fedoraproject.org/archives/list/[email protected]/message/CMNFX5MNYRWWIMO4BTKYQCGUDMHO3AXP/ [No Types Assigned]


CVE Modified by CERT/CC 8/24/2019 2:15:10 PM

Action Type Old Value New Value
Added Reference
http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00076.html [No Types Assigned]


CVE Modified by CERT/CC 8/23/2019 5:15:12 PM

Action Type Old Value New Value
Added Reference
https://security.netapp.com/advisory/ntap-20190823-0001/ [No Types Assigned]


Added Reference
https://security.netapp.com/advisory/ntap-20190823-0004/ [No Types Assigned]


Added Reference
https://security.netapp.com/advisory/ntap-20190823-0005/ [No Types Assigned]


Initial Analysis by NIST 8/23/2019 9:47:30 AM

Action Type Old Value New Value
Added CVSS V3
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H


Added CVSS V2
(AV:N/AC:L/Au:N/C:N/I:N/A:C)


Added CWE
CWE-400


Added CPE Configuration
AND
 OR
 *cpe:2.3:a:apple:swiftnio:*:*:*:*:*:*:*:* versions from (including) 1.0.0 up to (including) 1.4.0
 OR
 cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:* versions from (including) 10.12
 cpe:2.3:o:canonical:ubuntu_linux:*:*:*:*:*:*:*:* versions from (including) 14.04


Added CPE Configuration
OR
 *cpe:2.3:a:apache:traffic_server:*:*:*:*:*:*:*:* versions from (including) 6.0.0 up to (including) 6.2.3
 *cpe:2.3:a:apache:traffic_server:*:*:*:*:*:*:*:* versions from (including) 7.0.0 up to (including) 7.1.6
 *cpe:2.3:a:apache:traffic_server:*:*:*:*:*:*:*:* versions from (including) 8.0.0 up to (including) 8.0.3


Added CPE Configuration
OR
 *cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*


Changed Reference Type
http://seclists.org/fulldisclosure/2019/Aug/16 No Types Assigned


http://seclists.org/fulldisclosure/2019/Aug/16 Mailing List, Third Party Advisory


Changed Reference Type
http://www.openwall.com/lists/oss-security/2019/08/20/1 No Types Assigned


http://www.openwall.com/lists/oss-security/2019/08/20/1 Mailing List, Third Party Advisory


Changed Reference Type
https://github.com/Netflix/security-bulletins/blob/master/advisories/third-party/2019-002.md No Types Assigned


https://github.com/Netflix/security-bulletins/blob/master/advisories/third-party/2019-002.md Third Party Advisory


Changed Reference Type
https://kb.cert.org/vuls/id/605641/ No Types Assigned


https://kb.cert.org/vuls/id/605641/ Third Party Advisory, US Government Resource


Changed Reference Type
https://lists.apache.org/thread.html/392108390cef48af647a2e47b7fd5380e050e35ae8d1aa2030254c04@%3Cusers.trafficserver.apache.org%3E No Types Assigned


https://lists.apache.org/thread.html/392108390cef48af647a2e47b7fd5380e050e35ae8d1aa2030254c04@%3Cusers.trafficserver.apache.org%3E Third Party Advisory


Changed Reference Type
https://lists.apache.org/thread.html/ad3d01e767199c1aed8033bb6b3f5bf98c011c7c536f07a5d34b3c19@%3Cannounce.trafficserver.apache.org%3E No Types Assigned


https://lists.apache.org/thread.html/ad3d01e767199c1aed8033bb6b3f5bf98c011c7c536f07a5d34b3c19@%3Cannounce.trafficserver.apache.org%3E Third Party Advisory


Changed Reference Type
https://lists.apache.org/thread.html/bde52309316ae798186d783a5e29f4ad1527f61c9219a289d0eee0a7@%3Cdev.trafficserver.apache.org%3E No Types Assigned


https://lists.apache.org/thread.html/bde52309316ae798186d783a5e29f4ad1527f61c9219a289d0eee0a7@%3Cdev.trafficserver.apache.org%3E Third Party Advisory


Changed Reference Type
https://seclists.org/bugtraq/2019/Aug/24 No Types Assigned


https://seclists.org/bugtraq/2019/Aug/24 Mailing List, Third Party Advisory


Changed Reference Type
https://seclists.org/bugtraq/2019/Aug/31 No Types Assigned


https://seclists.org/bugtraq/2019/Aug/31 Mailing List, Third Party Advisory


Changed Reference Type
https://support.f5.com/csp/article/K98053339 No Types Assigned


https://support.f5.com/csp/article/K98053339 Third Party Advisory


Changed Reference Type
https://www.debian.org/security/2019/dsa-4503 No Types Assigned


https://www.debian.org/security/2019/dsa-4503 Third Party Advisory


Changed Reference Type
https://www.synology.com/security/advisory/Synology_SA_19_33 No Types Assigned


https://www.synology.com/security/advisory/Synology_SA_19_33 Third Party Advisory


CVE Modified by CERT/CC 8/20/2019 5:15:10 AM

Action Type Old Value New Value
Added Reference
http://www.openwall.com/lists/oss-security/2019/08/20/1 [No Types Assigned]


CVE Modified by CERT/CC 8/20/2019 1:15:10 AM

Action Type Old Value New Value
Added Reference
https://support.f5.com/csp/article/K98053339 [No Types Assigned]


CVE Modified by CERT/CC 8/19/2019 7:15:16 AM

Action Type Old Value New Value
Added Reference
https://seclists.org/bugtraq/2019/Aug/31 [No Types Assigned]


Added Reference
https://www.debian.org/security/2019/dsa-4503 [No Types Assigned]


CVE Modified by CERT/CC 8/18/2019 1:15:17 AM

Action Type Old Value New Value
Added Reference
https://www.synology.com/security/advisory/Synology_SA_19_33 [No Types Assigned]


CVE Modified by CERT/CC 8/16/2019 4:15:11 PM

Action Type Old Value New Value
Added Reference
http://seclists.org/fulldisclosure/2019/Aug/16 [No Types Assigned]


CVE Modified by CERT/CC 8/14/2019 8:15:13 AM

Action Type Old Value New Value
Added Reference
https://seclists.org/bugtraq/2019/Aug/24 [No Types Assigned]


CVE Modified by CERT/CC 8/13/2019 6:15:12 PM

Action Type Old Value New Value
Added Reference
https://lists.apache.org/thread.html/392108390cef48af647a2e47b7fd5380e050e35ae8d1aa2030254c04@%3Cusers.trafficserver.apache.org%3E [No Types Assigned]


Added Reference
https://lists.apache.org/thread.html/ad3d01e767199c1aed8033bb6b3f5bf98c011c7c536f07a5d34b3c19@%3Cannounce.trafficserver.apache.org%3E [No Types Assigned]


Added Reference
https://lists.apache.org/thread.html/bde52309316ae798186d783a5e29f4ad1527f61c9219a289d0eee0a7@%3Cdev.trafficserver.apache.org%3E [No Types Assigned]


Quick Info

CVE Dictionary Entry:
CVE-2019-9512
NVD Published Date:
08/13/2019
NVD Last Modified:
06/16/2026
Source:
CERT/CC