THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-9q54-f358-3fqf (medium) — s2n-quic has excessive memory allocation

[GHSA] GHSA-9q54-f358-3fqf (medium) — s2n-quic has excessive memory allocation

medgithub_advisoriesPublished 2026-08-14

GHSA-9q54-f358-3fqf Severity: medium CVE: CVE-2026-10740

s2n-quic has excessive memory allocation

s2n-quic is a Rust implementation of the QUIC protocol. An unauthenticated user can attempt to exhaust server memory on an s2n-quic endpoint by sending crafted CRYPTO frames with high offsets. The buffer used for processing CRYPTO frames does not enforce a maximum size. In the worst case, a single 1

Indicators of compromise

Original source: https://github.com/advisories/GHSA-9q54-f358-3fqf