vulnerability
Red Hat OpenShift: CVE-2022-41723: golang.org/x/net/http2: avoid quadratic complexity in HPACK decoding
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
8 | (AV:N/AC:L/Au:N/C:N/I:N/A:C) | 2023-02-28 | 2023-05-19 | 2025-04-11 |
Severity
8
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:C)
Published
2023-02-28
Added
2023-05-19
Modified
2025-04-11
Description
A maliciously crafted HTTP/2 stream could cause excessive CPU consumption in the HPACK decoder, sufficient to cause a denial of service from a small number of small requests.
Solution(s)
linuxrpm-upgrade-openshiftlinuxrpm-upgrade-podman
References
- CVE-2022-41723
- https://attackerkb.com/topics/CVE-2022-41723
- REDHAT-RHSA-2023:1325
- REDHAT-RHSA-2023:1326
- REDHAT-RHSA-2023:3083
- REDHAT-RHSA-2023:3167
- REDHAT-RHSA-2023:3304
- REDHAT-RHSA-2023:3305
- REDHAT-RHSA-2023:3367
- REDHAT-RHSA-2023:3445
- REDHAT-RHSA-2023:3447
- REDHAT-RHSA-2023:3450
- REDHAT-RHSA-2023:3455
- REDHAT-RHSA-2023:3495
- REDHAT-RHSA-2023:3537
- REDHAT-RHSA-2023:3612
- REDHAT-RHSA-2023:3614
- REDHAT-RHSA-2023:3742
- REDHAT-RHSA-2023:3918
- REDHAT-RHSA-2023:3943
- REDHAT-RHSA-2023:4003
- REDHAT-RHSA-2023:4090
- REDHAT-RHSA-2023:4091
- REDHAT-RHSA-2023:4112
- REDHAT-RHSA-2023:4113
- REDHAT-RHSA-2023:4225
- REDHAT-RHSA-2023:4226
- REDHAT-RHSA-2023:4293
- REDHAT-RHSA-2023:4335
- REDHAT-RHSA-2023:4421
- REDHAT-RHSA-2023:4456
- REDHAT-RHSA-2023:4603
- REDHAT-RHSA-2023:4627
- REDHAT-RHSA-2023:4664
- REDHAT-RHSA-2023:4731
- REDHAT-RHSA-2023:5006
- REDHAT-RHSA-2023:5007
- REDHAT-RHSA-2023:5233
- REDHAT-RHSA-2023:5314
- REDHAT-RHSA-2023:5672
- REDHAT-RHSA-2023:6235
- REDHAT-RHSA-2023:6248
- REDHAT-RHSA-2023:6251
- REDHAT-RHSA-2023:6346
- REDHAT-RHSA-2023:6363
- REDHAT-RHSA-2023:6402
- REDHAT-RHSA-2023:6473
- REDHAT-RHSA-2023:6474
- REDHAT-RHSA-2023:6832
- REDHAT-RHSA-2023:6938
- REDHAT-RHSA-2023:6939
- REDHAT-RHSA-2023:7058
- REDHAT-RHSA-2023:7823
- REDHAT-RHSA-2024:0198
- REDHAT-RHSA-2024:0485
- REDHAT-RHSA-2024:0948
- REDHAT-RHSA-2024:2944
- REDHAT-RHSA-2024:3494
- REDHAT-RHSA-2024:4677
- REDHAT-RHSA-2025:1116

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.