Skip to content

Vulnerability in packer project #13603

Description

@ankitdn

While working on packer project, I scanned the dependency manifest and found that it uses a vulnerable version of github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream. The scan revealed a denial-of-service issue where malformed EventStream headers can trigger a panic in the decoder, potentially crashing the application.

CVE Report
CVE Link

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions