CNNVD-202506-2541 Information

CNNVD ID

CNNVD-202506-2541

CVE-2025-4820

  • CNNVD Published: 2025-06-18

Description (Chinese)

quiche是Cloudflare开源的一个 IETF 指定的 QUIC 传输协议和 HTTP/3 的实现。 quiche存在安全漏洞,该漏洞源于拥塞窗口增长不当,可能导致数据发送速率超过路径支持能力。

Description (English)

quiche is the realization of a specified IETF QUIC transfer protocol and HTTP/3 from the Open Source of Cloudflare. There is a security loophole in quiche, which stems from the inappropriate growth of the congested window, which may lead to data distribution rates exceeding path support capacity.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

CloudFoundry

Published

2025-06-18

Last Modified

2026-02-24

References

https://github.com/cloudflare/quiche/security/advisories/GHSA-2v9p-3p3h-w56j

Patch

https://github.com/cloudflare/quiche/releases

Share on: