CVE detail
CVE-2019-11921 — CVE-2019-11921
Published 2019-07-25 · Modified 2026-06-17 · Vendor facebook · Product proxygen · Source nvd
CRITICAL
severity
CVSS-derived band
0.0208
EPSS probability
exploitation probability, 30d
80.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
An out of bounds write is possible via a specially crafted packet in certain configurations of Proxygen due to improper handling of Base64 when parsing malformed binary content in Structured HTTP Headers. This issue affects versions of proxygen prior to v2019.07.22.00.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References