Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-4437

Опубликовано: 08 мая 2024
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 7.5

Описание

The etcd package distributed with the Red Hat OpenStack platform has an incomplete fix for CVE-2021-44716. This issue occurs because the etcd package in the Red Hat OpenStack platform is using http://golang.org/x/net/http2 instead of the one provided by Red Hat Enterprise Linux versions, meaning it should be updated at compile time instead.

РелизСтатусПримечание
devel

not-affected

Red Hat OpenStack only
esm-apps/bionic

not-affected

Red Hat OpenStack only
esm-apps/focal

not-affected

Red Hat OpenStack only
esm-apps/jammy

not-affected

Red Hat OpenStack only
esm-apps/noble

not-affected

Red Hat OpenStack only
esm-apps/xenial

not-affected

Red Hat OpenStack only
focal

not-affected

Red Hat OpenStack only
jammy

not-affected

Red Hat OpenStack only
mantic

not-affected

Red Hat OpenStack only
noble

not-affected

Red Hat OpenStack only

Показывать по

EPSS

Процентиль: 24%
0.00078
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
больше 1 года назад

The etcd package distributed with the Red Hat OpenStack platform has an incomplete fix for CVE-2021-44716. This issue occurs because the etcd package in the Red Hat OpenStack platform is using http://golang.org/x/net/http2 instead of the one provided by Red Hat Enterprise Linux versions, meaning it should be updated at compile time instead.

CVSS3: 7.5
nvd
больше 1 года назад

The etcd package distributed with the Red Hat OpenStack platform has an incomplete fix for CVE-2021-44716. This issue occurs because the etcd package in the Red Hat OpenStack platform is using http://golang.org/x/net/http2 instead of the one provided by Red Hat Enterprise Linux versions, meaning it should be updated at compile time instead.

CVSS3: 7.5
github
больше 1 года назад

The etcd package distributed with the Red Hat OpenStack platform has an incomplete fix for CVE-2021-44716. This issue occurs because the etcd package in the Red Hat OpenStack platform is using http://golang.org/x/net/http2 instead of the one provided by Red Hat Enterprise Linux versions, meaning it should be updated at compile time instead.

EPSS

Процентиль: 24%
0.00078
Низкий

7.5 High

CVSS3