VDB
BDU%3A2023-08651
BDU%3A2023-08651
PUBLISHED
CVSS 4.599999904632568 MEDIUM
Уязвимость пакета io.netty: netty-codec-http сетевого программного средства Netty, позволяющая нарушителю раскрыть защищаемую информацию
Risk Scores
CVSS 2.0
4.599999904632568
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Novell Inc., Сообщество свободного программного обеспечения, NetApp Inc., Red Hat Inc., Oracle Corp., SonarSource, Apache Software Foundation | OpenSUSE Leap, Debian GNU/Linux, OnCommand Workflow Automation, SnapCenter, OpenShift Application Runtimes, Red Hat Single Sign-On, Red Hat JBoss Fuse, Jboss Operations Network, Red Hat JBoss Data Grid, Red Hat Process Automation, Red Hat build of Quarkus, Red Hat JBoss A-MQ, Red Hat JBoss Enterprise Application Platform Expansion Pack, SUSE Linux Enterprise Server for SAP Applications, SUSE Enterprise Storage, SUSE Linux Enterprise High Performance Computing, Active IQ Unified Manager for Microsoft Windows, Red Hat OpenShift Container Platform, Suse Linux Enterprise Server, Suse Linux Enterprise Desktop, SUSE Manager Retail Branch Server, SUSE Manager Proxy, SUSE Manager Server, SUSE Linux Enterprise Module for Development Tools, Decision Manager, Oracle Financial Services Crime and Compliance Management Studio, SUSE Linux Enterprise Real Time, SUSE Linux Enterprise Module for Package Hub, Red Hat JBoss Enterprise Application Platform, Active IQ Unified Manager for Linux, SonarQube, Red Hat AMQ Streams, netty, Logging subsystem for Red Hat OpenShift, Red Hat AMQ Broker, Red Hat Data Grid, Red Hat Fuse |
Timeline
- Dec 12, 2023 CVE Published
References
- https://security.netapp.com/advisory/ntap-20220616-0004/ url
- https://www.oracle.com/security-alerts/cpujul2022.html url
- https://github.com/netty/netty/security/advisories/GHSA-269q-hmxg-m83q url
- https://github.com/netty/netty/security/advisories/GHSA-5mcr-gq6c-3hq2 url
- https://github.com/netty/netty/commit/185f8b2756a36aaa4f973f1a2a025e7d981823f1 url
- https://security-tracker.debian.org/tracker/CVE-2022-24823 advisory
- https://access.redhat.com/security/cve/CVE-2022-24823 advisory
- https://www.suse.com/security/cve/CVE-2022-24823.html advisory