Uploaded image for project: 'Security Data'
  1. Security Data
  2. SECDATA-757

Potential FN for CVE-2022-4492 for the io.undertow:undertow-core - 2.2.5.Final-redhat-00001 package.

XMLWordPrintable

    • Icon: Task Task
    • Resolution: Done
    • Icon: Normal Normal
    • None
    • None
    • None
    • False
    • Hide

      None

      Show
      None
    • False

      Investigating a supposed FN for a customer, we noticed that you do not report the vuln CVE-2022-4492 for the pkg io.undertow:undertow-core - 2.2.5.Final-redhat-00001 here (https://access.redhat.com/security/cve/cve-2022-4492). Other feeds (https://github.com/advisories/GHSA-pfcc-3g6r-8rg8) report the vulnerability instead. Are we to understand that the vulnerability is fixed in the redhat build or is it really a FN?

              rhn-support-juspence Justin Spencer
              kendall.adkins@sysdig.com Kendall Adkins
              Votes:
              0 Vote for this issue
              Watchers:
              7 Start watching this issue

                Created:
                Updated:
                Resolved: