You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
HPACK can potentially use relatively little transmitted data to expand into a substantial amount of decompressed data. We should resist this attack by limiting the maximum size of the output header block to some reasonable (user-configurable) number, and defaulting it sensibly: probably to 16kB in the first instance.
The text was updated successfully, but these errors were encountered:
Inspired by section 4 of this document, about the HPACK bomb.
HPACK can potentially use relatively little transmitted data to expand into a substantial amount of decompressed data. We should resist this attack by limiting the maximum size of the output header block to some reasonable (user-configurable) number, and defaulting it sensibly: probably to 16kB in the first instance.
The text was updated successfully, but these errors were encountered: