CVE-2026-16756 - Allocation of resources without limits in the default aws-smithy-http-server serve() path allows unauthenticated Slowloris denial of service
Imported from official source
Bulletin ID: 2026-064-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 07/23/2026 11:30 AM PDT Description: Smithy-RS is a Rust code generation and runtime framework that generates HTTP clients and servers from Smithy interface definitions, powering the AWS SDK for Rust and custom service implementations. …
This version
- Version
- 1 of 2
- Recorded
- September 22, 2026 20:12
- Change
- Initial
- Content hash
fe97e65fa0d75527261767ae65d81e65- All versions
- Revision history