Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
slivanes
on Aug 6, 2021
|
parent
|
context
|
favorite
| on:
HTTP/2-exclusive threats caused by implementation ...
I'm not seeing anything about this in nginx changelogs (or matching CVE's) either. Disabling http2 for now.
yxhuvud
on Aug 6, 2021
[–]
Why would an Apache bug show up in Nginx changelogs?
masklinn
on Aug 6, 2021
|
parent
[–]
It would not, but given how widespread this issue is it seems likely nginx is vulnerable, and sensible to assume it is unless otherwise demonstrated.
It’s not like the feature is super useful in general.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: