If a gateway client application sends a malformed request to a gateway peer it may crash the peer node. This fix checks for the malformed gateway request and returns an error to the gateway client.
Fixed in v2.4.6.
None, users must upgrade to v2.4.6.
https://github.com/hyperledger/fabric/releases/tag/v2.4.6
If you have any questions or comments about this advisory: * Open an issue in Fabric
Thank you to Haosheng Wang of OPPO ZIWU Security Lab for this disclosure.
{ "nvd_published_at": "2022-08-18T16:15:00Z", "github_reviewed_at": "2022-10-13T19:12:05Z", "severity": "HIGH", "github_reviewed": true, "cwe_ids": [ "CWE-20" ] }