Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-54345

Опубликовано: 28 июл. 2026
Источник: debian
EPSS Низкий

Описание

gopacket provides packet processing capabilities for Go. In version 1.6.0 and earlier, the Diameter AVP decoder computes an AVP data length by subtracting a fixed header size from an attacker-controlled AVP Length field, so a vendor-flagged AVP whose Length is smaller than the 12-byte header underflows the unsigned 32-bit value and drives an unbounded allocation of roughly 4 GiB, and two such messages in succession OOM-kill a collector, causing an unauthenticated remote denial of service. This issue is fixed in version 1.6.1.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
golang-github-gopacket-gopacketnot-affectedpackage
gopacketnot-affectedpackage

Примечания

  • https://github.com/gopacket/gopacket/security/advisories/GHSA-6r28-9ppf-4hj5

  • Introduced with: https://github.com/gopacket/gopacket/commit/fe11a243b3365bf877ddd91f9ba37206c25d96df (v1.6.0)

  • Fixed by: https://github.com/gopacket/gopacket/commit/145859d0eaee1a6f5925ffb93851c976449c3311 (v1.6.1)

EPSS

Процентиль: 32%
0.00388
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
11 дней назад

gopacket provides packet processing capabilities for Go. In version 1.6.0 and earlier, the Diameter AVP decoder computes an AVP data length by subtracting a fixed header size from an attacker-controlled AVP Length field, so a vendor-flagged AVP whose Length is smaller than the 12-byte header underflows the unsigned 32-bit value and drives an unbounded allocation of roughly 4 GiB, and two such messages in succession OOM-kill a collector, causing an unauthenticated remote denial of service. This issue is fixed in version 1.6.1.

CVSS3: 7.5
nvd
11 дней назад

gopacket provides packet processing capabilities for Go. In version 1.6.0 and earlier, the Diameter AVP decoder computes an AVP data length by subtracting a fixed header size from an attacker-controlled AVP Length field, so a vendor-flagged AVP whose Length is smaller than the 12-byte header underflows the unsigned 32-bit value and drives an unbounded allocation of roughly 4 GiB, and two such messages in succession OOM-kill a collector, causing an unauthenticated remote denial of service. This issue is fixed in version 1.6.1.

github
11 дней назад

GoPacket's Diameter AVP decoder: uint32 underflow on vendor header size leads to unbounded ~4 GiB allocation (unauthenticated remote DoS)

EPSS

Процентиль: 32%
0.00388
Низкий