CYBER CODE RED

Get real-time updates on Telegram

P5Verified

gRPC-Go: Heap Memory Exhaustion (OOM) via HTTP/2 DATA Frame Fragmentation

CVE-2026-84304 affects azl3 docker-cli 25.0.7-4 on Azure Linux 3.0. CVSS base score 4.4 (Microsoft Security Response Center). EPSS 0.00609 (percentile 0.473), scored 2026-10-03. Fixed version: 28.0.0-r0. Fixed version: 0.16.2-r0. Fixed version: 0.75.0-r0. Fixed version: 0.75.0-r0.

Published

CVE
CVE-2026-84304
Product
azl3 docker-cli 25.0.7-4 on Azure Linux 3.0
CCR priority
17.8 /100 (P5)
CVSS
4.4 /10 · CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H · Microsoft Security Response Center
EPSS
0.00609 · percentile 0.47297 · 2026-10-04
KEV
no

Affected products

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2026-84304.html