Описание
An attacker can craft an input to the Parse functions that would be processed non-linearly with respect to its length, resulting in extremely slow parsing. This could cause a denial of service.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 0.16.0ubuntu1 |
| esm-infra/focal | released | 0.9.2~20.04.2ubuntu0.1 |
| focal | released | 0.9.2~20.04.2ubuntu0.1 |
| jammy | released | 0.14.3~22.04ubuntu0.1 |
| noble | released | 0.14.3~24.04ubuntu0.1 |
| oracular | released | 0.15.2ubuntu0.1 |
| plucky | released | 0.16.0ubuntu1 |
| questing | released | 0.16.0ubuntu1 |
| upstream | needs-triage |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | code not present |
| esm-apps/bionic | not-affected | code not present |
| esm-apps/noble | not-affected | code not present |
| esm-apps/xenial | not-affected | code not present |
| esm-infra/focal | not-affected | code not present |
| focal | not-affected | code not present |
| jammy | not-affected | code not present |
| noble | not-affected | code not present |
| oracular | not-affected | code not present |
| plucky | not-affected | code not present |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | needed | |
| esm-apps/jammy | released | 1:0.0+git20211209.491a49a+dfsg-1ubuntu0.1~esm1 |
| esm-apps/noble | released | 1:0.21.0+dfsg-1ubuntu0.1~esm1 |
| esm-infra/focal | DNE | |
| focal | DNE | |
| jammy | needed | |
| noble | needed | |
| oracular | ignored | end of life, was needed |
| plucky | needed | |
| questing | needed |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-apps/bionic | released | 1:0.0+git20170629.c81e7f2+dfsg-2ubuntu0.1~esm1 |
| esm-apps/focal | released | 1:0.0+git20190811.74dc4d7+dfsg-1ubuntu0.1~esm1 |
| esm-infra/xenial | released | 1:0.0+git20160110.4fd4a9f-1ubuntu0.1~esm1 |
| focal | ignored | end of standard support, was needed |
| jammy | DNE | |
| noble | DNE | |
| oracular | DNE | |
| plucky | DNE | |
| questing | DNE |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | code not present |
| esm-apps/bionic | not-affected | code not present |
| esm-apps/xenial | not-affected | code not present |
| esm-infra/focal | not-affected | code not present |
| focal | not-affected | code not present |
| jammy | not-affected | code not present |
| noble | not-affected | code not present |
| oracular | not-affected | code not present |
| plucky | not-affected | code not present |
| questing | not-affected | code not present |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-infra/focal | DNE | |
| esm-infra/xenial | released | 2.3.7-0ubuntu0.16.04.1+esm1 |
| focal | DNE | |
| jammy | DNE | |
| noble | DNE | |
| oracular | DNE | |
| plucky | DNE | |
| questing | DNE | |
| upstream | needs-triage |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-apps/focal | not-affected | code not present |
| esm-infra/bionic | not-affected | code not present |
| esm-infra/xenial | not-affected | code not present |
| focal | not-affected | code not present |
| jammy | DNE | |
| noble | DNE | |
| oracular | DNE | |
| plucky | DNE | |
| questing | DNE |
Показывать по
Ссылки на источники
EPSS
5.3 Medium
CVSS3
Связанные уязвимости
An attacker can craft an input to the Parse functions that would be processed non-linearly with respect to its length, resulting in extremely slow parsing. This could cause a denial of service.
An attacker can craft an input to the Parse functions that would be processed non-linearly with respect to its length, resulting in extremely slow parsing. This could cause a denial of service.
An attacker can craft an input to the Parse functions that would be pr ...
Non-linear parsing of case-insensitive content in golang.org/x/net/html
EPSS
5.3 Medium
CVSS3