CVE-2026-16756 - Allocation of resources without limits in the default aws-smithy-http-server serve() path allows unauthenticated Slowloris denial of service

Published 2026-08-20T21:35:57Z437deb5729164c09336ce3d0790963f516aed16cd44439036772dd80127652de

Source metadata

Publication date
2026-08-20T21:35:57Z
Source identifier
a35ec35ab92489aced91958c743e4195789aebc1
Public record ID
record:sha256:437deb5729164c09336ce3d0790963f516aed16cd44439036772dd80127652de

This is source-provided metadata, not an enriched summary or an impact assessment. Follow the canonical source link for the published material.

Evidence and limitations

Source ID
aws_security_bulletins
Record identifier
437deb5729164c09336ce3d0790963f516aed16cd44439036772dd80127652de
Record type
Source metadata

This record may overlap with other records. Source metadata can be incomplete or change. Validate consequential decisions against the linked source and your own environment.