VYPR

rpm package

suse/distribution&distro=SUSE Linux Enterprise Module for Containers 15 SP4

pkg:rpm/suse/distribution&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Containers%2015%20SP4

Vulnerabilities (1)

  • CVE-2023-2253Jun 6, 2023
    affected < 2.8.1-150400.9.18.1fixed 2.8.1-150400.9.18.1

    A flaw was found in the `/v2/_catalog` endpoint in distribution/distribution, which accepts a parameter to control the maximum number of records returned (query string: `n`). This vulnerability allows a malicious user to submit an unreasonably large value for `n,` causing the all