Lucene search

K
redhatRedHatRHSA-2023:1079
HistoryMar 06, 2023 - 3:41 p.m.

(RHSA-2023:1079) Moderate: Red Hat OpenStack Platform 16.2 (osp-director-downloader-container, osp-director-agent-container and osp-director-operator-container) security update

2023-03-0615:41:14
access.redhat.com
28
rhsa-2023-1079
moderate
cve-2022-2879
cve-2022-41715
cve-2022-41717
memory consumption
http/2 requests
cvss score
references
unix

0.005 Low

EPSS

Percentile

75.9%

Security Fix(es):

  • archive/tar: unbounded memory consumption when reading headers
    (CVE-2022-2879)

  • regexp/syntax: limit memory used by parsing regexps (CVE-2022-41715)

  • net/http: An attacker can cause excessive memory growth in a Go server
    accepting HTTP/2 requests (CVE-2022-41717)

For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE
page listed in the References section.