Security Advisory

CVE-2026-10740

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-10 18:09:36
Last updated 2026-06-10 19:14:59
Assigner AMZN
CVSS score 5.3
State PUBLISHED

Description

Unbounded memory allocation in the CRYPTO frame reassembler in s2n-quic before 1.8.2 may allow an unauthenticated remote actor to cause a denial of service (degraded availability) by sending crafted QUIC Initial packets. To remediate this issue, users should upgrade to v1.8.2.