BIT-hyperledger-fabric-orderer-2022-36023

See a problem?
Import Source
https://github.com/bitnami/vulndb/tree/main/data/hyperledger-fabric-orderer/BIT-hyperledger-fabric-orderer-2022-36023.json
JSON Data
https://api.test.osv.dev/v1/vulns/BIT-hyperledger-fabric-orderer-2022-36023
Aliases
Published
2024-07-18T19:21:59.560Z
Modified
2024-11-27T19:40:48.342Z
Summary
[none]
Details

Hyperledger Fabric is an enterprise-grade permissioned distributed ledger framework for developing solutions and applications. If a gateway client application sends a malformed request to a gateway peer it may crash the peer node. Version 2.4.6 checks for the malformed gateway request and returns an error to the gateway client. There are no known workarounds, users must upgrade to version 2.4.6.

Database specific
{
    "cpes": [
        "cpe:2.3:a:hyperledger:fabric:*:*:*:*:*:*:*:*"
    ],
    "severity": "High"
}
References

Affected packages

Bitnami / hyperledger-fabric-orderer

Package

Name
hyperledger-fabric-orderer
Purl
pkg:bitnami/hyperledger-fabric-orderer

Severity

  • 7.0 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H CVSS Calculator

Affected ranges

Type
SEMVER
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.4.6