Looking for the vulnerability index of Invicti's legacy products?
OpenSSL Inefficient Algorithmic Complexity Vulnerability (CVE-2026-42772) - Vulnerability Database

OpenSSL Inefficient Algorithmic Complexity Vulnerability (CVE-2026-42772)

Description

Issue summary: The QUIC stream reassembly algorithm performance deteriorates progressively as packets are arriving out of order. The worst case has a quadratic complexity proportional to the number of stream frames kept in the buffer for the received stream data. Impact summary: A remote QUIC peer that completes the handshake can create a connection-scoped CPU pressure and potentially a Denial of Service using compliant STREAM frames inside the advertised receive window, with low attacker bandw

References

Related Vulnerabilities