CVE-2026-49975: HTTP/2 Bomb minaccia 880.000 siti, patch urgenti per NGINX e Apache episode artwork

EPISODE · Jun 5, 2026 · 9 MIN

CVE-2026-49975: HTTP/2 Bomb minaccia 880.000 siti, patch urgenti per NGINX e Apache

from GoYou Cybersecurity

CVE-2026-49975, detta HTTP/2 Bomb, è una vulnerabilità critica DoS che colpisce le configurazioni predefinite di NGINX, Apache HTTPD, Microsoft IIS, Envoy e Cloudflare Pingora. Scoperta da Calif usando OpenAI’s Codex, combina una variante di compression bomb HPACK con un attacco Slowloris-style per causare crash immediati e esaurimento della memoria. NGINX e Apache hanno rilasciato patch, mentre altri server rimangono vulnerabili.

Episode metadata supplied by the publisher feed · Published Jun 5, 2026

Embed this episode

NOW PLAYING

CVE-2026-49975: HTTP/2 Bomb minaccia 880.000 siti, patch urgenti per NGINX e Apache

0:00 9:42

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of GoYou Cybersecurity?

This episode is 9 minutes long.

When was this GoYou Cybersecurity episode published?

This episode was published on June 5, 2026.

Can I download this GoYou Cybersecurity episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!