4 ms·
Here is a server vulnerability matrix... pretty much if you are running HTTP/2 you are exposed and your vendor has a patch waiting for you. https://vuls.cert.o
by netsectoday 7y ago
Here is a server vulnerability matrix... pretty much if you are running HTTP/2 you are exposed and your vendor has a patch waiting for you.
https://vuls.cert.org/confluence/pages/viewpage.action?pageId=56393752 https://vuls.cert.org/confluence/pages/viewpage.action?pageI...
- Matthias247 7y agoA little bit disappointed they didn't test my implementation (https://github.com/Matthias247/http2dotnet https://github.com/Matthias247/http2dotnet). It's more or less the only feature complete standalone HTTP/2 implementation for .NET - but somehow that ecosystem seams to be too niche so that nobody ever got interested in using it. Actually I feel like it avoids most if not all of the described issues. async/await in combination with the design principle of always exercising backpressure on the client and having no internal queues goes a long way in this.