Количество 24
Количество 24

BDU:2025-04014
Уязвимость пакета net/http языка программирования Go, связанная с недостатками обработки HTTP-запросов, позволяющая нарушителю выполнить произвольный код

ROS-20250417-08
Уязвимость golang

CVE-2025-22871
The net/http package improperly accepts a bare LF as a line terminator in chunked data chunk-size lines. This can permit request smuggling if a net/http server is used in conjunction with a server that incorrectly accepts a bare LF as part of a chunk-ext.

CVE-2025-22871
The net/http package improperly accepts a bare LF as a line terminator in chunked data chunk-size lines. This can permit request smuggling if a net/http server is used in conjunction with a server that incorrectly accepts a bare LF as part of a chunk-ext.

CVE-2025-22871
The net/http package improperly accepts a bare LF as a line terminator in chunked data chunk-size lines. This can permit request smuggling if a net/http server is used in conjunction with a server that incorrectly accepts a bare LF as part of a chunk-ext.

CVE-2025-22871
CVE-2025-22871
The net/http package improperly accepts a bare LF as a line terminator ...

SUSE-SU-2025:1153-1
Security update for go1.24

SUSE-SU-2025:1141-1
Security update for go1.23
GHSA-g9pc-8g42-g6vq
The net/http package improperly accepts a bare LF as a line terminator in chunked data chunk-size lines. This can permit request smuggling if a net/http server is used in conjunction with a server that incorrectly accepts a bare LF as part of a chunk-ext.
ELSA-2025-9150
ELSA-2025-9150: gvisor-tap-vsock security update (MODERATE)
ELSA-2025-9147
ELSA-2025-9147: buildah security update (MODERATE)
ELSA-2025-9145
ELSA-2025-9145: skopeo security update (MODERATE)
ELSA-2025-9144
ELSA-2025-9144: podman security update (MODERATE)
ELSA-2025-9143
ELSA-2025-9143: containernetworking-plugins security update (MODERATE)
ELSA-2025-9106
ELSA-2025-9106: git-lfs security update (MODERATE)
ELSA-2025-9060
ELSA-2025-9060: git-lfs security update (MODERATE)
ELSA-2025-8918
ELSA-2025-8918: grafana-pcp security update (MODERATE)
ELSA-2025-8916
ELSA-2025-8916: grafana-pcp security update (MODERATE)
ELSA-2025-8682
ELSA-2025-8682: grafana security update (MODERATE)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | BDU:2025-04014 Уязвимость пакета net/http языка программирования Go, связанная с недостатками обработки HTTP-запросов, позволяющая нарушителю выполнить произвольный код | CVSS3: 9.1 | 0% Низкий | 3 месяца назад |
![]() | ROS-20250417-08 Уязвимость golang | CVSS3: 9.1 | 0% Низкий | 2 месяца назад |
![]() | CVE-2025-22871 The net/http package improperly accepts a bare LF as a line terminator in chunked data chunk-size lines. This can permit request smuggling if a net/http server is used in conjunction with a server that incorrectly accepts a bare LF as part of a chunk-ext. | CVSS3: 9.1 | 0% Низкий | 2 месяца назад |
![]() | CVE-2025-22871 The net/http package improperly accepts a bare LF as a line terminator in chunked data chunk-size lines. This can permit request smuggling if a net/http server is used in conjunction with a server that incorrectly accepts a bare LF as part of a chunk-ext. | CVSS3: 5.4 | 0% Низкий | 2 месяца назад |
![]() | CVE-2025-22871 The net/http package improperly accepts a bare LF as a line terminator in chunked data chunk-size lines. This can permit request smuggling if a net/http server is used in conjunction with a server that incorrectly accepts a bare LF as part of a chunk-ext. | CVSS3: 9.1 | 0% Низкий | 2 месяца назад |
![]() | CVSS3: 9.1 | 0% Низкий | 2 месяца назад | |
CVE-2025-22871 The net/http package improperly accepts a bare LF as a line terminator ... | CVSS3: 9.1 | 0% Низкий | 2 месяца назад | |
![]() | SUSE-SU-2025:1153-1 Security update for go1.24 | 0% Низкий | 2 месяца назад | |
![]() | SUSE-SU-2025:1141-1 Security update for go1.23 | 0% Низкий | 3 месяца назад | |
GHSA-g9pc-8g42-g6vq The net/http package improperly accepts a bare LF as a line terminator in chunked data chunk-size lines. This can permit request smuggling if a net/http server is used in conjunction with a server that incorrectly accepts a bare LF as part of a chunk-ext. | CVSS3: 9.1 | 0% Низкий | 2 месяца назад | |
ELSA-2025-9150 ELSA-2025-9150: gvisor-tap-vsock security update (MODERATE) | 4 дня назад | |||
ELSA-2025-9147 ELSA-2025-9147: buildah security update (MODERATE) | 3 дня назад | |||
ELSA-2025-9145 ELSA-2025-9145: skopeo security update (MODERATE) | 4 дня назад | |||
ELSA-2025-9144 ELSA-2025-9144: podman security update (MODERATE) | 3 дня назад | |||
ELSA-2025-9143 ELSA-2025-9143: containernetworking-plugins security update (MODERATE) | 4 дня назад | |||
ELSA-2025-9106 ELSA-2025-9106: git-lfs security update (MODERATE) | 4 дня назад | |||
ELSA-2025-9060 ELSA-2025-9060: git-lfs security update (MODERATE) | 4 дня назад | |||
ELSA-2025-8918 ELSA-2025-8918: grafana-pcp security update (MODERATE) | 9 дней назад | |||
ELSA-2025-8916 ELSA-2025-8916: grafana-pcp security update (MODERATE) | 9 дней назад | |||
ELSA-2025-8682 ELSA-2025-8682: grafana security update (MODERATE) | 11 дней назад |
Уязвимостей на страницу