DirectorySecurity Advisories
Sign In
Security Advisories

CGA-2jgg-4x23-r4r8

Published

Last updated

https://images.chainguard.dev/security/CGA-2jgg-4x23-r4r8
Package

etcd-fips-3.4

Latest Update
Under investigation
Aliases
  • GHSA-pm3m-32r3-7mfh

Summary

Etcd embed auto compaction retention negative value causing a compaction loop or a crash

Description

Impact

Data Validation

Detail

The parseCompactionRetention function in embed/etcd.go allows the retention variable value to be negative and causes the node to execute the history compaction in a loop, taking more CPU than usual and spamming logs.

References

Find out more on this vulnerability in the security audit report

For more information

If you have any questions or comments about this advisory:

References

  • https://github.com/advisories/GHSA-pm3m-32r3-7mfh

Updates


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images