Advisories ยป MGASA-2022-0180

Updated golang-github-prometheus-client packages fix security vulnerability

Publication date: 15 May 2022
Modification date: 15 May 2022
Type: security
Affected Mageia releases : 8
CVE: CVE-2022-21698

Description

HTTP server is susceptible to a Denial of Service through unbounded
cardinality, and potential memory exhaustion, when handling requests with
non-standard HTTP methods.
                

References

SRPMS

8/core