
Mitigating CVE-2023-38180 in http://ASP.NET Core Kestrel http://ASP.NET Core sites face denial-of-service risk from CVE-2023-38180 when Kestrel processes crafted HTTP/2 requests. Apply patches and set Kestrel limits to keep production ser… https://www.aspnix.com/posts/mitigating-cve-2023-38180-in-asp-net-core-kestrel #ASPNETCore #CVE #CVEs
Post summary
The post offers mitigation guidance for ASP.NET Core servers to address a denial‑of‑service vulnerability (CVE‑2023‑38180) caused by crafted HTTP/2 requests by applying patches and tightening Kestrel limits.
