rpm package
opensuse/restic&distro=openSUSE Tumbleweed
pkg:rpm/opensuse/restic&distro=openSUSE%20Tumbleweed
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-33814 | Hig | 7.5 | < 0.18.1-3.1 | 0.18.1-3.1 | May 7, 2026 | When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it receives a SETTINGS_MAX_FRAME_SIZE with a value of 0. | |
| CVE-2025-22868 | — | < 0.17.3-2.1 | 0.17.3-2.1 | Feb 26, 2025 | An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. |
- affected < 0.18.1-3.1fixed 0.18.1-3.1
When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it receives a SETTINGS_MAX_FRAME_SIZE with a value of 0.
- CVE-2025-22868Feb 26, 2025affected < 0.17.3-2.1fixed 0.17.3-2.1
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing.