{"id":"GHSA-65rp-cv85-263x","summary":"etcd denial of service vulnerability","details":"Etcd v3.5.4 allows remote attackers to cause a denial of service via function PageWriter.write in pagewriter.go","aliases":["CVE-2022-34038"],"modified":"2026-09-10T03:49:57.518898168Z","published":"2023-08-22T21:30:26Z","withdrawn":"2023-10-09T21:46:43Z","database_specific":{"github_reviewed":true,"github_reviewed_at":"2023-08-23T13:25:22Z","nvd_published_at":"2023-08-22T19:16:23Z","cwe_ids":["CWE-787"],"severity":"HIGH"},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-34038"},{"type":"WEB","url":"https://github.com/golang/vulndb/issues/2016#issuecomment-1698677762"},{"type":"WEB","url":"https://github.com/etcd-io/etcd/pull/14022"},{"type":"WEB","url":"https://github.com/etcd-io/etcd/pull/14452"},{"type":"WEB","url":"https://github.com/etcd-io/etcd/commit/5a315ef88fbfa454e02d27b0b8acb4f89457cd90"},{"type":"PACKAGE","url":"https://github.com/etcd-io/etcd"},{"type":"WEB","url":"https://go-review.googlesource.com/c/vulndb/+/524456"},{"type":"WEB","url":"https://go-review.googlesource.com/c/vulndb/+/524456/2/data/excluded/GO-2023-2016.yaml"}],"affected":[{"package":{"name":"go.etcd.io/etcd/v3","ecosystem":"Go","purl":"pkg:golang/go.etcd.io/etcd/v3"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"3.5.5"}]}],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2023/08/GHSA-65rp-cv85-263x/GHSA-65rp-cv85-263x.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}