Описание
ELSA-2022-7648: grafana-pcp security update (MODERATE)
[3.2.0-2]
- resolve CVE-2022-1705 golang: net/http: improper sanitization of Transfer-Encoding header
- resolve CVE-2022-32148 golang: net/http/httputil: NewSingleHostReverseProxy - omit X-Forwarded-For not working
- resolve CVE-2022-30631 golang: compress/gzip: stack exhaustion in Reader.Read
- resolve CVE-2022-30630 golang: io/fs: stack exhaustion in Glob
- resolve CVE-2022-30632 golang: path/filepath: stack exhaustion in Glob
- resolve CVE-2022-30635 golang: encoding/gob: stack exhaustion in Decoder.Decode
Обновленные пакеты
Oracle Linux 8
Oracle Linux aarch64
grafana-pcp
3.2.0-2.el8
Oracle Linux x86_64
grafana-pcp
3.2.0-2.el8