ALAS-2023-1881

Related Vulnerabilities: CVE-2022-41723  

http2/hpack: avoid quadratic complexity in hpack decoding (CVE-2022-41723)

ALAS-2023-1881


Amazon Linux 1 Security Advisory: ALAS-2023-1881
Advisory Release Date: 2023-10-30 23:31 Pacific
Advisory Updated Date: 2023-11-03 18:20 Pacific
Severity: Important

Issue Overview:

http2/hpack: avoid quadratic complexity in hpack decoding (CVE-2022-41723)


Affected Packages:

docker


Issue Correction:
Run yum update docker to update your system.

New Packages:
src:
    docker-20.10.13-3.amzn1.src

x86_64:
    docker-20.10.13-3.amzn1.x86_64
    docker-debuginfo-20.10.13-3.amzn1.x86_64