5.3
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Description
Unbounded memory allocation in the CRYPTO frame reassembler in s2n-quic before 1.8.2 may allow an unauthenticated remote actor to cause a denial of service (degraded availability) by sending crafted QUIC Initial packets.
To remediate this issue, users should upgrade to v1.8.2.
To remediate this issue, users should upgrade to v1.8.2.
Basic Information
ID
CVE-2026-10740
Source
AMZN
Published
Jun 10, 2026 at 18:09
Modified
Jun 10, 2026 at 18:16
Affected Product
Vendor
AWS
Product
s2n-quic
Affected Versions
AWS s2n-quic 0