Description
A maliciously crafted HTTP/2 stream could cause excessive CPU consumption in the HPACK decoder, sufficient to cause a denial of service from a small number of small requests.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-0804 | A maliciously crafted HTTP/2 stream could cause excessive CPU consumption in the HPACK decoder, sufficient to cause a denial of service from a small number of small requests. |
Github GHSA |
GHSA-vvpx-j8f3-3w6h | golang.org/x/net vulnerable to Uncontrolled Resource Consumption |
Ubuntu USN |
USN-7109-1 | Go vulnerabilities |
Ubuntu USN |
USN-7111-1 | Go vulnerabilities |
Ubuntu USN |
USN-8089-1 | Go Networking vulnerabilities |
Ubuntu USN |
USN-8089-2 | Go Networking vulnerabilities |
Ubuntu USN |
USN-8089-3 | ADSys, Juju Core, LXD vulnerabilities |
References
History
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Mon, 05 May 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 22 Nov 2024 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Subscriptions
Golang
Subscribe
Go
Subscribe
Hpack
Subscribe
Http2
Subscribe
Redhat
Subscribe
Advanced Cluster Security
Subscribe
Cert Manager
Subscribe
Container Native Virtualization
Subscribe
Cryostat
Subscribe
Enterprise Linux
Subscribe
Logging
Subscribe
Migration Toolkit Applications
Subscribe
Migration Toolkit Virtualization
Subscribe
Ocp Tools
Subscribe
Openshift
Subscribe
Openshift Api Data Protection
Subscribe
Openshift Data Foundation
Subscribe
Openshift Serverless
Subscribe
Openstack
Subscribe
Rhmt
Subscribe
Rhosemc
Subscribe
Serverless
Subscribe
Service Interconnect
Subscribe
Service Mesh
Subscribe
Status: PUBLISHED
Assigner: Go
Published:
Updated: 2025-05-05T16:12:28.159Z
Reserved: 2022-09-28T17:00:06.610Z
Link: CVE-2022-41723
Updated: 2024-08-03T12:49:43.617Z
Status : Modified
Published: 2023-02-28T18:15:09.980
Modified: 2025-05-05T16:15:20.433
Link: CVE-2022-41723
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA
Ubuntu USN