Unlimited Resource Allocation Vulnerability Affects Cloudflare Quiche
CVE-2024-1765
What is CVE-2024-1765?
Cloudflare Quiche versions up to 0.20.0 are susceptible to an unlimited resource allocation vulnerability, which can lead to uncontrolled memory usage on systems running the quiche server or client. An attacker could exploit this issue by sending an unlimited number of 1-RTT CRYPTO frames following a successful QUIC handshake. The exploitation can occur throughout the duration of the connection, and this period can be extended actively by the attacker. Affected users are advised to upgrade to Cloudflare Quiche versions 0.19.2 or 0.20.1, which contain a fix for this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
quiche Rust 0.15.0
quiche Rust 0.20.0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
