SUSE-SU-2022:3922-1
Dashboard / Vulnerabilities / SUSE-SU-2022:3922-1
SUSE-SU-2022:3922-1
Summary: Security update for protobuf
Details: This update for protobuf fixes the following issues: - CVE-2021-22569: Fixed Denial of Service in protobuf-java in the parsing procedure for binary data (bsc#1194530). - CVE-2022-1941: Fix a potential DoS issue in protobuf-cpp and protobuf-python (bsc#1203681) - CVE-2022-3171: Fix a potential DoS issue when parsing with binary data in protobuf-java (bsc#1204256)
References: https://www.suse.com/support/update/announcement/2022/suse-su-20223922-1/, https://bugzilla.suse.com/1194530, https://bugzilla.suse.com/1203681, https://bugzilla.suse.com/1204256, https://www.suse.com/security/cve/CVE-2021-22569, https://www.suse.com/security/cve/CVE-2022-1941, https://www.suse.com/security/cve/CVE-2022-3171
Affected packages
Package
Name: protobuf
Purl: pkg:rpm/suse/protobuf&distro=SUSE%20Linux%20Enterprise%20Installer%20Updates%2015%20SP2
Affected ranges
Type: ECOSYSTEM
Events:
