CVE-2022-29930: High severity ktor vulnerability
Published May 12, 2022
·Updated
SHA1 implementation in JetBrains Ktor Native 2.0.0 was returning the same value. The issue was fixed in Ktor version 2.0.1.
Affected Software
1 affected component
JetBrains Ktor=2.0.0
Remediation
Patch Available
Event History
May 12, 2022
CVE Published
via MITRE·08:35 AM
Data Sourced
via MITRE·08:35 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-29930?
The severity of CVE-2022-29930 is high.
2
What is the affected software for CVE-2022-29930?
The affected software for CVE-2022-29930 is JetBrains Ktor version 2.0.0.
3
How can I fix CVE-2022-29930?
To fix CVE-2022-29930, you need to update JetBrains Ktor to version 2.0.1 or higher.
4
What is the CWE ID of CVE-2022-29930?
The CWE ID of CVE-2022-29930 is 330 and 342.
5
Where can I find more information about CVE-2022-29930?
You can find more information about CVE-2022-29930 on the JetBrains Ktor GitHub repository and JetBrains privacy and security issues fixed page.