[FEDORA-2023-ca444fdecf] Fedora 37: gmailctl

Severity High
Affected Packages 1
CVEs 3

Rebuild for CVE-20220-{3064,41717,41723}

Package Affected Version
pkg:rpm/fedora/gmailctl?distro=fedora-37 < 0.10.6.2.fc37
ID
FEDORA-2023-ca444fdecf
Severity
high
Severity from
CVE-2022-3064
URL
https://bodhi.fedoraproject.org/updates/FEDORA-2023-ca444fdecf
Published
2023-03-24T02:00:15
(18 months ago)
Modified
2023-03-24T02:00:15
(18 months ago)
Rights
Copyright 2023 Red Hat, Inc.
Other Advisories
Source # ID Name URL
Bugzilla 2161274 Bug #2161274 - CVE-2022-41717 golang: net/http: An attacker can cause excessive memory growth in a Go server accepting HTTP/2 requests https://bugzilla.redhat.com/show_bug.cgi?id=2161274
Bugzilla 2178358 Bug #2178358 - CVE-2022-41723 golang.org/x/net/http2: avoid quadratic complexity in HPACK decoding https://bugzilla.redhat.com/show_bug.cgi?id=2178358
Bugzilla 2163037 Bug #2163037 - CVE-2022-3064 go-yaml: Improve heuristics preventing CPU/memory abuse by parsing malicious or large YAML documents https://bugzilla.redhat.com/show_bug.cgi?id=2163037
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/fedora/gmailctl?distro=fedora-37 fedora gmailctl < 0.10.6.2.fc37 fedora-37
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...