CVE-2016-7153 (chrome, edge, firefox, internet_explorer, opera, safari)

CVE-2016-7153 (chrome, edge, firefox, internet_explorer, opera, safari)

The HTTP/2 protocol does not consider the role of the TCP congestion window in providing information about content length, which makes it easier for remote attackers to obtain cleartext data by leveraging a web-browser configuration in which third-party cookies are sent, aka a "HEIST" attack.

Source: CVE-2016-7153 (chrome, edge, firefox, internet_explorer, opera, safari)

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다