PatchSiren

Amazon Web Services CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Amazon Web Services CVE published 2026-06-10

CVE-2026-10740

CVE-2026-10740 is a medium-severity vulnerability in s2n-quic, a QUIC implementation. The vulnerability is caused by unbounded memory allocation in the CRYPTO frame reassembler, which may allow an unauthenticated remote actor to cause a denial of service (degraded availability) by sending crafted QUIC Initial packets.