Hide Forgot
Rat.SetString in math/big in Go before 1.16.14 and 1.17.x before 1.17.7 has an overflow that can lead to Uncontrolled Memory Consumption. Reference: https://groups.google.com/g/golang-announce/c/SUsQn0aSgPQ
Created golang tracking bugs for this issue: Affects: epel-all [bug 2053533] Affects: fedora-all [bug 2053535] Affects: openstack-rdo [bug 2053534]
Upstream issue: https://github.com/golang/go/issues/50699 Patch: https://github.com/golang/go/commit/ad345c265916bbf6c646865e4642eafce6d39e78
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2022:1819 https://access.redhat.com/errata/RHSA-2022:1819
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2022-23772
This issue has been addressed in the following products: Openshift Serverless 1 on RHEL 8 Via RHSA-2022:4860 https://access.redhat.com/errata/RHSA-2022:4860
This issue has been addressed in the following products: Openshift Serveless 1.22 Via RHSA-2022:4863 https://access.redhat.com/errata/RHSA-2022:4863
This issue has been addressed in the following products: OpenShift Service Mesh 2.1 Via RHSA-2022:5004 https://access.redhat.com/errata/RHSA-2022:5004
This issue has been addressed in the following products: Red Hat OpenShift Container Platform 4.10 Via RHSA-2022:5730 https://access.redhat.com/errata/RHSA-2022:5730
This issue has been addressed in the following products: Red Hat OpenShift Container Platform 4.11 Ironic content for Red Hat OpenShift Container Platform 4.11 Via RHSA-2022:5068 https://access.redhat.com/errata/RHSA-2022:5068
This issue has been addressed in the following products: Red Hat OpenShift Data Foundation 4.11 on RHEL8 Via RHSA-2022:6155 https://access.redhat.com/errata/RHSA-2022:6155
This issue has been addressed in the following products: Red Hat OpenShift Data Foundation 4.11 on RHEL8 Via RHSA-2022:6156 https://access.redhat.com/errata/RHSA-2022:6156
This issue has been addressed in the following products: RHEL-8-CNV-4.11 Via RHSA-2022:6526 https://access.redhat.com/errata/RHSA-2022:6526
This issue has been addressed in the following products: RHEL-8-CNV-4.12 Via RHSA-2023:0408 https://access.redhat.com/errata/RHSA-2023:0408