/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-vqx5-8xcg-4hmp

Published

Last updated

https://images.chainguard.dev/security/CGA-vqx5-8xcg-4hmp
Package

zookeeper-3.8

Repository

Chainguard

Latest Update
Pending upstream fix
Aliases
  • CVE-2024-12798
  • GHSA-pr98-23f8-jwxv

Severity

Unknown

References

  • https://nvd.nist.gov/vuln/detail/CVE-2024-12798

Updates

Status

Pending upstream fix

Impact

While there is a fix that exists upstream in main, the maintainers have deliberately prevented this from being implemented in the current release and are holding it for 3.10.0 as seen here in the conversation: https://github.com/apache/zookeeper/pull/2162#issuecomment-2092233436 and the fix versions in apache’s project page being v3.10.0: https://issues.apache.org/jira/browse/ZOOKEEPER-4831

Status

Under investigation


Safe Source for Open Sourceâ„¢
Contact us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing