CVE-2017-10869: Dena h2o

High severity, CVSS 7.5. EPSS: 2.7% chance of exploitation in the next 30 days.

Buffer overflow in H2O version 2.2.2 and earlier allows remote attackers to cause a denial-of-service in the server via unspecified vectors.

Affected products

  • Dena h2o: up to and including 2.2.2

Published 2017-12-22. Last modified 2026-06-17.