icerpc-csharp icon indicating copy to clipboard operation
icerpc-csharp copied to clipboard

Review Slic potential security issues

Open bentoi opened this issue 2 years ago • 1 comments

See https://github.com/dotnet/runtime/issues/30600

I believe of these apply to Slic and in particular the PING flood attack (https://github.com/advisories/GHSA-hgr8-6h9x-f7q9) if we keep the PONG frame. See also https://github.com/icerpc/icerpc-csharp/issues/3273

I'm targeting this for 0.2, please change if you prefer to look into this for 0.1.

bentoi avatar Jun 07 '23 09:06 bentoi

See also https://www.bleepingcomputer.com/news/security/new-http-2-flaws-expose-unpatched-web-servers-to-dos-attacks/

bentoi avatar Jun 13 '23 08:06 bentoi