CVE-2026-16756 - Allocation of resources without limits in the default aws-smithy-http-server serve() path allows unauthenticated Slowloris denial of service
Published 2026-08-20T21:35:57Z•437deb5729164c09336ce3d0790963f516aed16cd44439036772dd80127652de
Source metadata
- Publication date
- 2026-08-20T21:35:57Z
- Source identifier
- a35ec35ab92489aced91958c743e4195789aebc1
- Public record ID
- record:sha256:437deb5729164c09336ce3d0790963f516aed16cd44439036772dd80127652de
This is source-provided metadata, not an enriched summary or an impact assessment. Follow the canonical source link for the published material.
Evidence and limitations
- Source ID
- aws_security_bulletins
- Record identifier
- 437deb5729164c09336ce3d0790963f516aed16cd44439036772dd80127652de
- Record type
- Source metadata
This record may overlap with other records. Source metadata can be incomplete or change. Validate consequential decisions against the linked source and your own environment.