[GHSA-8rm2-7qqf-34qm] Prometheus: Remote read endpoint allows denial of service via crafted snappy payload#7812
Conversation
|
Hi there @roidelapluie! A community member has suggested an improvement to your security advisory. If approved, this change will affect the global advisory listed at github.com/advisories. It will not affect the version listed in your project repository. This change will be reviewed by our Security Curation Team. If you have thoughts or feedback, please share them in a comment here! If this PR has already been closed, you can start a new community contribution for this advisory |
|
Hi there @roidelapluie! A community member has suggested an improvement to your security advisory. If approved, this change will affect the global advisory listed at github.com/advisories. It will not affect the version listed in your project repository. This change will be reviewed by our Security Curation Team. If you have thoughts or feedback, please share them in a comment here! If this PR has already been closed, you can start a new community contribution for this advisory |
Updates
Comments
0.305.3 includes the patch as well. See prometheus/prometheus@3ac0063 and prometheus/prometheus#18585