Skip to main content

CVE-2022-27664

CVE Details

Visit the official vulnerability details page for CVE-2022-27664 to learn more.

Initial Publication

10/25/2024

Last Update

10/25/2024

Third Party Dependency

go

NIST CVE Summary

In net/http in Go before 1.18.6 and 1.19.x before 1.19.1, attackers can cause a denial of service because an HTTP/2 connection can hang during closing if shutdown were preempted by a fatal error.

CVE Severity

7.5

Our Official Summary

This CVE is non impacting as the impacting symbol and/or function is not used in the product.

Status

Ongoing

Affected Products & Versions

VersionPalette EnterprisePalette Enterprise AirgapVerteXVerteX Airgap
4.5.11ImpactedNo ImpactImpactedNo Impact
4.5.10ImpactedNo ImpactImpactedNo Impact
4.5.8ImpactedNo ImpactImpactedNo Impact
4.5.5ImpactedNo ImpactImpactedNo Impact
4.5.4ImpactedNo ImpactImpactedNo Impact
4.4.20ImpactedNo ImpactImpactedNo Impact

Revision History

DateRevision
11/15/2024Impacted versions changed from 4.5.4, 4.5.5, 4.5.8, 4.4.20, 4.5.10 to 4.5.4, 4.5.5, 4.5.8, 4.4.20, 4.5.10, 4.5.11
11/15/2024Impacted versions changed from 4.5.4, 4.5.5, 4.5.8, 4.4.20 to 4.5.4, 4.5.5, 4.5.8, 4.4.20, 4.5.10
11/13/2024Impacted versions changed from 4.5.4, 4.5.5, 4.5.8 to 4.5.4, 4.5.5, 4.5.8, 4.4.20
11/10/2024Impacted versions changed from 4.5.4, 4.5.5 to 4.5.4, 4.5.5, 4.5.8
10/27/2024Impacted versions changed from 4.5.4 to 4.5.4, 4.5.5