
Hacker News: Front Page
shared a link post in group #Stream of Goodies

github.com
CVE-2023-40547 - avoid incorrectly trusting HTTP headers · rhboot/shim@0226b56
When retrieving files via HTTP or related protocols, shim attempts to allocate a buffer to store the received data. Unfortunately, this means getting the size from an HTTP header, which can be man...