vulnerability

SUSE: CVE-2022-27664: SUSE Linux Security Advisory

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:C)
Published
Sep 6, 2022
Added
Oct 26, 2022
Modified
Jan 28, 2025

Description

In net/http in Go before 1.18.6 and 1.19.x before 1.19.1, attackers can cause a denial of service because an HTTP/2 connection can hang during closing if shutdown were preempted by a fatal error.

Solutions

suse-upgrade-bindsuse-upgrade-bind-chrootenvsuse-upgrade-bind-develsuse-upgrade-bind-devel-32bitsuse-upgrade-bind-docsuse-upgrade-bind-utilssuse-upgrade-dracut-saltbootsuse-upgrade-go1-18suse-upgrade-go1-18-docsuse-upgrade-go1-18-opensslsuse-upgrade-go1-18-openssl-docsuse-upgrade-go1-18-openssl-racesuse-upgrade-go1-18-racesuse-upgrade-go1-19suse-upgrade-go1-19-docsuse-upgrade-go1-19-racesuse-upgrade-golang-github-prometheus-alertmanagersuse-upgrade-golang-github-prometheus-node_exportersuse-upgrade-grafanasuse-upgrade-kubernetes1-24-clientsuse-upgrade-kubernetes1-24-client-commonsuse-upgrade-libbind9-1600suse-upgrade-libbind9-1600-32bitsuse-upgrade-libdns1605suse-upgrade-libdns1605-32bitsuse-upgrade-libirs-develsuse-upgrade-libirs1601suse-upgrade-libirs1601-32bitsuse-upgrade-libisc1606suse-upgrade-libisc1606-32bitsuse-upgrade-libisccc1600suse-upgrade-libisccc1600-32bitsuse-upgrade-libisccfg1600suse-upgrade-libisccfg1600-32bitsuse-upgrade-libns1604suse-upgrade-libns1604-32bitsuse-upgrade-python3-bindsuse-upgrade-spacecmdsuse-upgrade-wire
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.