Description
Hyperledger Fabric is an enterprise-grade permissioned distributed ledger framework for developing solutions and applications. If a gateway client application sends a malformed request to a gateway peer it may crash the peer node. Version 2.4.6 checks for the malformed gateway request and returns an error to the gateway client. There are no known workarounds, users must upgrade to version 2.4.6.
Published: 2022-08-18
Score: 7 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-7152 Hyperledger Fabric is an enterprise-grade permissioned distributed ledger framework for developing solutions and applications. If a gateway client application sends a malformed request to a gateway peer it may crash the peer node. Version 2.4.6 checks for the malformed gateway request and returns an error to the gateway client. There are no known workarounds, users must upgrade to version 2.4.6.
Github GHSA Github GHSA GHSA-qj6r-fhrc-jj5r Remote denial of service in Hyperledger Fabric Gateway
History

Wed, 23 Apr 2025 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

Hyperledger Fabric
cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2025-04-23T17:49:14.987Z

Reserved: 2022-07-15T00:00:00.000Z

Link: CVE-2022-36023

cve-icon Vulnrichment

Updated: 2024-08-03T09:51:59.668Z

cve-icon NVD

Status : Modified

Published: 2022-08-18T16:15:08.110

Modified: 2024-11-21T07:12:12.383

Link: CVE-2022-36023

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses