CVE-2022-34038

Etcd v3.5.4 allows remote attackers to cause a denial of service via function PageWriter.write in pagewriter.go. NOTE: the vendor's position is that this is not a vulnerability.
Configurations

Configuration 1 (hide)

cpe:2.3:a:etcd:etcd:3.5.4:*:*:*:*:*:*:*

History

21 Nov 2024, 07:08

Type Values Removed Values Added
References () https://github.com/etcd-io/etcd/pull/14022 - Patch () https://github.com/etcd-io/etcd/pull/14022 - Patch
References () https://github.com/etcd-io/etcd/pull/14452 - Patch () https://github.com/etcd-io/etcd/pull/14452 - Patch
References () https://github.com/golang/vulndb/issues/2016#issuecomment-1698677762 - () https://github.com/golang/vulndb/issues/2016#issuecomment-1698677762 -
References () https://go-review.googlesource.com/c/vulndb/+/524456 - () https://go-review.googlesource.com/c/vulndb/+/524456 -
References () https://go-review.googlesource.com/c/vulndb/+/524456/2/data/excluded/GO-2023-2016.yaml - () https://go-review.googlesource.com/c/vulndb/+/524456/2/data/excluded/GO-2023-2016.yaml -

07 Nov 2023, 03:48

Type Values Removed Values Added
Summary ** DISPUTED ** Etcd v3.5.4 allows remote attackers to cause a denial of service via function PageWriter.write in pagewriter.go. NOTE: the vendor's position is that this is not a vulnerability. Etcd v3.5.4 allows remote attackers to cause a denial of service via function PageWriter.write in pagewriter.go. NOTE: the vendor's position is that this is not a vulnerability.

06 Sep 2023, 16:15

Type Values Removed Values Added
References
  • (MISC) https://go-review.googlesource.com/c/vulndb/+/524456/2/data/excluded/GO-2023-2016.yaml -
  • (MISC) https://github.com/golang/vulndb/issues/2016#issuecomment-1698677762 -
  • (MISC) https://go-review.googlesource.com/c/vulndb/+/524456 -
Summary Etcd v3.5.4 allows remote attackers to cause a denial of service via function PageWriter.write in pagewriter.go ** DISPUTED ** Etcd v3.5.4 allows remote attackers to cause a denial of service via function PageWriter.write in pagewriter.go. NOTE: the vendor's position is that this is not a vulnerability.

30 Aug 2023, 15:18

Type Values Removed Values Added
First Time Etcd
Etcd etcd
References (MISC) https://github.com/etcd-io/etcd/pull/14022 - (MISC) https://github.com/etcd-io/etcd/pull/14022 - Patch
References (MISC) https://github.com/etcd-io/etcd/pull/14452 - (MISC) https://github.com/etcd-io/etcd/pull/14452 - Patch
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CWE CWE-787
CPE cpe:2.3:a:etcd:etcd:3.5.4:*:*:*:*:*:*:*

22 Aug 2023, 20:10

Type Values Removed Values Added
New CVE

Information

Published : 2023-08-22 19:16

Updated : 2024-11-21 07:08


NVD link : CVE-2022-34038

Mitre link : CVE-2022-34038

CVE.ORG link : CVE-2022-34038


JSON object : View

Products Affected

etcd

  • etcd
CWE
CWE-787

Out-of-bounds Write