A newly flagged CVE with public proof-of-concept code shows how protocol-layer features can shift from performance boosters to availability risks.