Skip to main content
Version: latest

CVE-2022-4899

CVE Details

CVE-2022-4899

Last Update

08/16/2024

NIST CVE Summary

A vulnerability was found in zstd v1.4.10, where an attacker can supply empty string as an argument to the command line tool to cause buffer overrun.

Our Official Summary

Waiting on a fix from third party mongodb & calico vendors

CVE Severity

7.5

Status

Ongoing

Affected Products & Versions

  • Palette VerteX 4.4.14

Revision History

  • 1.0 08/16/2024 Initial Publication
  • 2.0 08/17/2024 Added palette VerteX 4.4.14 to Affected Products