Логотип exploitDog
bind:"CVE-2025-47906" OR bind:"CVE-2025-58183"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2025-47906" OR bind:"CVE-2025-58183"

Количество 69

Количество 69

rocky логотип

RLSA-2025:22668

4 месяца назад

Moderate: go-toolset:rhel8 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2025-22668

4 месяца назад

ELSA-2025-22668: go-toolset:ol8 security update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2025-47906

6 месяцев назад

If the PATH environment variable contains paths which are executables (rather than just directories), passing certain strings to LookPath ("", ".", and ".."), can result in the binaries listed in the PATH being unexpectedly returned.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2025-47906

6 месяцев назад

If the PATH environment variable contains paths which are executables (rather than just directories), passing certain strings to LookPath ("", ".", and ".."), can result in the binaries listed in the PATH being unexpectedly returned.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2025-47906

6 месяцев назад

If the PATH environment variable contains paths which are executables (rather than just directories), passing certain strings to LookPath ("", ".", and ".."), can result in the binaries listed in the PATH being unexpectedly returned.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2025-47906

7 месяцев назад

Unexpected paths returned from LookPath in os/exec

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2025-47906

6 месяцев назад

If the PATH environment variable contains paths which are executables ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2025-58183

5 месяцев назад

tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations.

CVSS3: 4.3
EPSS: Низкий
redhat логотип

CVE-2025-58183

5 месяцев назад

tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2025-58183

5 месяцев назад

tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations.

CVSS3: 4.3
EPSS: Низкий
msrc логотип

CVE-2025-58183

5 месяцев назад

Unbounded allocation when parsing GNU sparse map in archive/tar

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2025-58183

5 месяцев назад

tar.Reader does not set a maximum size on the number of sparse region ...

CVSS3: 4.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0298-1

2 месяца назад

Security update for go1.25-openssl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0297-1

2 месяца назад

Security update for go1.25-openssl

EPSS: Низкий
rocky логотип

RLSA-2025:22005

4 месяца назад

Moderate: go-rpm-macros security update

EPSS: Низкий
github логотип

GHSA-gwrf-jf3h-w649

6 месяцев назад

If the PATH environment variable contains paths which are executables (rather than just directories), passing certain strings to LookPath ("", ".", and ".."), can result in the binaries listed in the PATH being unexpectedly returned.

CVSS3: 6.5
EPSS: Низкий
oracle-oval логотип

ELSA-2025-22005

4 месяца назад

ELSA-2025-22005: go-rpm-macros security update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2025-11595

6 месяцев назад

Уязвимость языка программирования Go, связанная с неправильной проверкой входных данных, позволяющая нарушителю повысить свои привилегии

CVSS3: 6.5
EPSS: Низкий
rocky логотип

RLSA-2025:23948

3 месяца назад

Moderate: grafana security update

EPSS: Низкий
rocky логотип

RLSA-2025:23374

3 месяца назад

Moderate: container-tools:rhel8 security update

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2025:22668

Moderate: go-toolset:rhel8 security update

4 месяца назад
oracle-oval логотип
ELSA-2025-22668

ELSA-2025-22668: go-toolset:ol8 security update (MODERATE)

4 месяца назад
ubuntu логотип
CVE-2025-47906

If the PATH environment variable contains paths which are executables (rather than just directories), passing certain strings to LookPath ("", ".", and ".."), can result in the binaries listed in the PATH being unexpectedly returned.

CVSS3: 6.5
0%
Низкий
6 месяцев назад
redhat логотип
CVE-2025-47906

If the PATH environment variable contains paths which are executables (rather than just directories), passing certain strings to LookPath ("", ".", and ".."), can result in the binaries listed in the PATH being unexpectedly returned.

CVSS3: 6.5
0%
Низкий
6 месяцев назад
nvd логотип
CVE-2025-47906

If the PATH environment variable contains paths which are executables (rather than just directories), passing certain strings to LookPath ("", ".", and ".."), can result in the binaries listed in the PATH being unexpectedly returned.

CVSS3: 6.5
0%
Низкий
6 месяцев назад
msrc логотип
CVE-2025-47906

Unexpected paths returned from LookPath in os/exec

CVSS3: 8.8
0%
Низкий
7 месяцев назад
debian логотип
CVE-2025-47906

If the PATH environment variable contains paths which are executables ...

CVSS3: 6.5
0%
Низкий
6 месяцев назад
ubuntu логотип
CVE-2025-58183

tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations.

CVSS3: 4.3
0%
Низкий
5 месяцев назад
redhat логотип
CVE-2025-58183

tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations.

CVSS3: 7.5
0%
Низкий
5 месяцев назад
nvd логотип
CVE-2025-58183

tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations.

CVSS3: 4.3
0%
Низкий
5 месяцев назад
msrc логотип
CVE-2025-58183

Unbounded allocation when parsing GNU sparse map in archive/tar

CVSS3: 5.5
0%
Низкий
5 месяцев назад
debian логотип
CVE-2025-58183

tar.Reader does not set a maximum size on the number of sparse region ...

CVSS3: 4.3
0%
Низкий
5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0298-1

Security update for go1.25-openssl

2 месяца назад
suse-cvrf логотип
SUSE-SU-2026:0297-1

Security update for go1.25-openssl

2 месяца назад
rocky логотип
RLSA-2025:22005

Moderate: go-rpm-macros security update

0%
Низкий
4 месяца назад
github логотип
GHSA-gwrf-jf3h-w649

If the PATH environment variable contains paths which are executables (rather than just directories), passing certain strings to LookPath ("", ".", and ".."), can result in the binaries listed in the PATH being unexpectedly returned.

CVSS3: 6.5
0%
Низкий
6 месяцев назад
oracle-oval логотип
ELSA-2025-22005

ELSA-2025-22005: go-rpm-macros security update (MODERATE)

4 месяца назад
fstec логотип
BDU:2025-11595

Уязвимость языка программирования Go, связанная с неправильной проверкой входных данных, позволяющая нарушителю повысить свои привилегии

CVSS3: 6.5
0%
Низкий
6 месяцев назад
rocky логотип
RLSA-2025:23948

Moderate: grafana security update

0%
Низкий
3 месяца назад
rocky логотип
RLSA-2025:23374

Moderate: container-tools:rhel8 security update

0%
Низкий
3 месяца назад

Уязвимостей на страницу