Description

When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it receives a SETTINGS_MAX_FRAME_SIZE with a value of 0.

INFO

Published Date :

2026-05-07T19:41:17.631Z

Last Modified :

2026-05-07T19:41:17.631Z

Source :

Go
AFFECTED PRODUCTS

The following products are affected by CVE-2026-33814 vulnerability.

Vendors Products
Go Standard Library
  • Net/http
Golang
  • Http2
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2026-33814.

CVSS Vulnerability Scoring System