CVE-2020-27813: Debian Linux
High severity, CVSS 7.5. EPSS: 2.1% chance of exploitation in the next 30 days.
An integer overflow vulnerability exists with the length of websocket frames received via a websocket connection. An attacker would use this flaw to cause a denial of service attack on an HTTP Server allowing websocket connections.
Affected products
- Debian Debian Linux: version 9.0 only
- Gorillatoolkit Websocket: before 1.4.1 (fixed in 1.4.1)
Published 2020-12-02. Last modified 2026-06-17.