{"id":"ROOT-OS-ALPINE-317-CVE-2024-28182","summary":"CVE-2024-28182 in nghttp2 - Patched by Root","details":"Root has patched CVE-2024-28182 in the nghttp2 package for Root:Alpine:3.17. Multiple fixed versions available.","modified":"2026-09-29T10:15:06.434037667Z","published":"2026-09-29T09:56:27Z","upstream":["CVE-2024-28182"],"database_specific":{"distro":"alpine","distro_version":"3.17","severity":"MEDIUM","source":"Root"},"affected":[{"package":{"name":"nghttp2","ecosystem":"Root:Alpine:3.17"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.51.0-r20071"},{"fixed":"1.51.0-r20072"},{"fixed":"1.51.0-r20074"},{"fixed":"1.51.0-r20073"},{"fixed":"1.51.0-r20075"}]}],"database_specific":{"total_fixed_versions":5,"upstream_version":"1.51.0","all_fixed_versions":["1.51.0-r20071","1.51.0-r20072","1.51.0-r20074","1.51.0-r20073","1.51.0-r20075"],"root_patch_version":"r20075","source":"https://api.root.io/external/osv/ROOT-OS-ALPINE-317-CVE-2024-28182.json","root_patched":true}},{"package":{"name":"rootio-nghttp2","ecosystem":"Root:Alpine:3.17"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.51.0-r20071"},{"fixed":"1.51.0-r20072"},{"fixed":"1.51.0-r20074"},{"fixed":"1.51.0-r20073"},{"fixed":"1.51.0-r20075"}]}],"database_specific":{"upstream_version":"1.51.0","all_fixed_versions":["1.51.0-r20071","1.51.0-r20072","1.51.0-r20074","1.51.0-r20073","1.51.0-r20075"],"root_patch_version":"r20075","root_patched":true,"source":"https://api.root.io/external/osv/ROOT-OS-ALPINE-317-CVE-2024-28182.json","total_fixed_versions":5}}],"schema_version":"1.9.0"}