UBUNTU-CVE-2022-29190
Dashboard / Vulnerabilities / UBUNTU-CVE-2022-29190
UBUNTU-CVE-2022-29190
Summary:
Details: Pion DTLS is a Go implementation of Datagram Transport Layer Security. Prior to version 2.1.4, an attacker can send packets that sends Pion DTLS into an infinite loop when processing. Version 2.1.4 contains a patch for this issue. There are currently no known workarounds available.
References: https://ubuntu.com/security/CVE-2022-29190, https://github.com/pion/dtls/security/advisories/GHSA-cm8f-h6j3-p25c, https://github.com/pion/dtls/commit/e0b2ce3592e8e7d73713ac67b363a2e192a4cecf, https://github.com/pion/dtls/releases/tag/v2.1.4, https://github.com/pion/dtls/commit/e0b2ce3592e8e7d73713ac67b363a2e192a4cecf, https://www.cve.org/CVERecord?id=CVE-2022-29190, https://ubuntu.com/security/notices/USN-7966-1, https://ubuntu.com/security/notices/USN-7966-2
Affected packages
Package
Name: snowflake
Purl: pkg:deb/ubuntu/[email protected]+esm2?arch=source&distro=esm-apps/jammy
Affected ranges
Type: ECOSYSTEM
Events:
