Описание
Yapscan Denial of Service vulnerability in report server
Impact
If you use the report server, it may be vulnerable to a Denial of Service attack.
Patches
Has been patched in v0.19.2.
References
The vulnerability was inherited by the following upstream vulnerabilites
Ссылки
- https://github.com/fkie-cad/yapscan/security/advisories/GHSA-wxwq-525w-hcqx
- https://github.com/fkie-cad/yapscan/pull/46
- https://github.com/fkie-cad/yapscan/commit/242b4b25b107deacddd4ca276b45d23e16bb3b88
- https://github.com/fkie-cad/yapscan/commit/65f277662c6475eb3f592e0e4fdfee902ecd9326
- https://github.com/advisories/GHSA-69cg-p879-7622
- https://github.com/advisories/GHSA-ppp9-7jff-5vj2
- https://github.com/fkie-cad/yapscan/releases/tag/v0.19.2
Пакеты
Наименование
github.com/fkie-cad/yapscan
go
Затронутые версииВерсия исправления
>= 0.18.0, < 0.19.2
0.19.2
7.5 High
CVSS3
7.5 High
CVSS3