An attacker may cause a denial of service by crafting an Accept-Language header which ParseAcceptLanguage will take significant time to parse.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade giteaUpgrade docker-cli-compose | Aug 22, 2024 | Oct 14, 2022 |
| Amazon Linux Ami 2 | — | Upgrade containerd-debuginfoUpgrade containerdUpgrade containerd-stress | Jan 23, 2024 | Oct 14, 2022 |
| Debian | — | Upgrade golang-golang-x-text | Jul 30, 2024 | Oct 14, 2022 |
| Dell Powerstore Dsa2023366 | — | Upgrade Dell PowerStoreOS to the latest version | Oct 23, 2025 | Oct 5, 2023 |
| Gentoo Linux | — | Upgrade www-apps/gitea. | Oct 31, 2022 | Oct 14, 2022 |
| Redhat Openshift | — | Upgrade podman | Jun 27, 2023 | Oct 11, 2022 |
| Redhat_linux | — | Upgrade criu-debugsourceUpgrade libslirpUpgrade buildah-debuginfoUpgrade fuse-overlayfs-debuginfoUpgrade aardvark-dnsUpgrade conmon-debuginfoUpgrade podmanUpgrade containers-commonUpgrade criu-libsUpgrade criuUpgrade oci-seccomp-bpf-hookUpgrade fuse-overlayfs-debugsourceUpgrade python3-podmanUpgrade buildah-tests-debuginfoUpgrade fuse-overlayfsUpgrade crun-debuginfoUpgrade conmon-debugsourceUpgrade crun-debugsourceUpgrade runc-debugsourceUpgrade criu-debuginfoUpgrade buildahUpgrade netavarkUpgrade buildah-testsUpgrade skopeoUpgrade toolboxUpgrade podman-catatonitUpgrade cockpit-podmanUpgrade toolbox-testsUpgrade libslirp-develUpgrade skopeo-debugsourceUpgrade toolbox-debugsourceUpgrade oci-seccomp-bpf-hook-debugsourceUpgrade podman-gvproxyUpgrade criu-libs-debuginfoUpgrade skopeo-debuginfoUpgrade slirp4netns-debuginfoUpgrade container-selinuxUpgrade podman-plugins-debuginfoNo solution existsUpgrade containernetworking-plugins-debuginfoUpgrade podman-debugsourceUpgrade podman-gvproxy-debuginfoUpgrade runcUpgrade python3-criuUpgrade podman-remote-debuginfoUpgrade libslirp-debuginfoUpgrade slirp4netns-debugsourceUpgrade containernetworking-pluginsUpgrade conmonUpgrade buildah-debugsourceUpgrade toolbox-debuginfoUpgrade containernetworking-plugins-debugsourceUpgrade podman-pluginsUpgrade runc-debuginfoUpgrade podman-remoteUpgrade criu-develUpgrade podman-catatonit-debuginfoUpgrade critUpgrade oci-seccomp-bpf-hook-debuginfoUpgrade podman-testsUpgrade crunUpgrade skopeo-testsUpgrade slirp4netnsUpgrade podman-dockerUpgrade podman-debuginfoUpgrade libslirp-debugsourceUpgrade udica | Apr 29, 2024 | Oct 14, 2022 |
| Splunk | — | Upgrade Splunk Enterprise to version 9.0.6Upgrade Splunk Enterprise to version 8.2.12Upgrade Splunk Enterprise to version 9.1.1 | Jul 30, 2026 | Oct 14, 2022 |
| Suse | — | Upgrade bind-devel-32bitUpgrade prometheus-postgres_exporterUpgrade bind-develUpgrade bind-chrootenvUpgrade bind-docUpgrade libisccc1600-32bitUpgrade libisccfg1600-32bitUpgrade golang-github-qubitproducts-exporter_exporterUpgrade libbind9-1600-32bitUpgrade bindUpgrade libirs-develUpgrade golang-github-prometheus-node_exporterUpgrade libisccfg1600Upgrade spacecmdUpgrade bind-utilsUpgrade libbind9-1600Upgrade libirs1601Upgrade prometheus-blackbox_exporterUpgrade grafanaUpgrade libisccc1600Upgrade libisc1606-32bitUpgrade libirs1601-32bitUpgrade libdns1605Upgrade dracut-saltbootUpgrade supportutils-plugin-susemanager-clientUpgrade libns1604Upgrade python3-bindUpgrade wireUpgrade libdns1605-32bitUpgrade golang-github-lusitaniae-apache_exporterUpgrade libisc1606Upgrade libns1604-32bit | Jun 22, 2023 | Oct 14, 2022 |
| Ubuntu | — | Upgrade golang-x-text-devUpgrade golang-golang-x-text-dev | Mar 22, 2023 | Oct 14, 2022 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub