CVE-2026-33814 affecting package ignition-flatcar for versions less than 2.22.0-5
Details
When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it receives a SETTINGSMAXFRAME_SIZE with a value of 0.