Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 126

Количество 126

rocky логотип

RLSA-2026:36317

23 дня назад

Important: skopeo security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-36317

24 дня назад

ELSA-2026-36317: skopeo security update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2026-27145

около 2 месяцев назад

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SAN list, verification costs scaled quadratically based on the number of SAN entries multiplied by the hostname's label count. Because x509.Verify validates hostnames before building the certificate chain, this overhead occurred even for untrusted certificates.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2026-27145

около 2 месяцев назад

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SAN list, verification costs scaled quadratically based on the number of SAN entries multiplied by the hostname's label count. Because x509.Verify validates hostnames before building the certificate chain, this overhead occurred even for untrusted certificates.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-27145

около 2 месяцев назад

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SAN list, verification costs scaled quadratically based on the number of SAN entries multiplied by the hostname's label count. Because x509.Verify validates hostnames before building the certificate chain, this overhead occurred even for untrusted certificates.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2026-27145

около 2 месяцев назад

Inefficient candidate hostname parsing in crypto/x509

EPSS: Низкий
debian логотип

CVE-2026-27145

около 2 месяцев назад

*x509.Certificate).VerifyHostname previously called matchHostnames in ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2026-25679

5 месяцев назад

url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2026-25679

5 месяцев назад

url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-25679

5 месяцев назад

url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2026-25679

5 месяцев назад

Incorrect parsing of IPv6 host literals in net/url

EPSS: Низкий
debian логотип

CVE-2026-25679

5 месяцев назад

url.Parse insufficiently validated the host/authority component and ac ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4279-q6mj-392r

около 2 месяцев назад

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SAN list, verification costs scaled quadratically based on the number of SAN entries multiplied by the hostname's label count. Because x509.Verify validates hostnames before building the certificate chain, this overhead occurred even for untrusted certificates.

CVSS3: 6.5
EPSS: Низкий
fstec логотип

BDU:2026-09275

около 2 месяцев назад

Уязвимость компонента crypto/x509 языка программирования Go, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20260710-73-0030

21 день назад

Уязвимость mimir

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20260707-73-0036

24 дня назад

Уязвимость golang

CVSS3: 7.5
EPSS: Низкий
rocky логотип

RLSA-2026:35832

24 дня назад

Important: golang-github-openprinting-ipp-usb security update

EPSS: Низкий
rocky логотип

RLSA-2026:29981

около 1 месяца назад

Moderate: golang security, bug fix, and enhancement update

EPSS: Низкий
rocky логотип

RLSA-2026:9044

2 месяца назад

Important: osbuild-composer security update

EPSS: Низкий
rocky логотип

RLSA-2026:8841

3 месяца назад

Important: go-rpm-macros security update

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2026:36317

Important: skopeo security update

23 дня назад
oracle-oval логотип
ELSA-2026-36317

ELSA-2026-36317: skopeo security update (IMPORTANT)

24 дня назад
ubuntu логотип
CVE-2026-27145

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SAN list, verification costs scaled quadratically based on the number of SAN entries multiplied by the hostname's label count. Because x509.Verify validates hostnames before building the certificate chain, this overhead occurred even for untrusted certificates.

CVSS3: 6.5
1%
Низкий
около 2 месяцев назад
redhat логотип
CVE-2026-27145

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SAN list, verification costs scaled quadratically based on the number of SAN entries multiplied by the hostname's label count. Because x509.Verify validates hostnames before building the certificate chain, this overhead occurred even for untrusted certificates.

CVSS3: 7.5
1%
Низкий
около 2 месяцев назад
nvd логотип
CVE-2026-27145

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SAN list, verification costs scaled quadratically based on the number of SAN entries multiplied by the hostname's label count. Because x509.Verify validates hostnames before building the certificate chain, this overhead occurred even for untrusted certificates.

CVSS3: 6.5
1%
Низкий
около 2 месяцев назад
msrc логотип
CVE-2026-27145

Inefficient candidate hostname parsing in crypto/x509

1%
Низкий
около 2 месяцев назад
debian логотип
CVE-2026-27145

*x509.Certificate).VerifyHostname previously called matchHostnames in ...

CVSS3: 6.5
1%
Низкий
около 2 месяцев назад
ubuntu логотип
CVE-2026-25679

url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.

CVSS3: 7.5
1%
Низкий
5 месяцев назад
redhat логотип
CVE-2026-25679

url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.

CVSS3: 7.5
1%
Низкий
5 месяцев назад
nvd логотип
CVE-2026-25679

url.Parse insufficiently validated the host/authority component and accepted some invalid URLs.

CVSS3: 7.5
1%
Низкий
5 месяцев назад
msrc логотип
CVE-2026-25679

Incorrect parsing of IPv6 host literals in net/url

1%
Низкий
5 месяцев назад
debian логотип
CVE-2026-25679

url.Parse insufficiently validated the host/authority component and ac ...

CVSS3: 7.5
1%
Низкий
5 месяцев назад
github логотип
GHSA-4279-q6mj-392r

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SAN list, verification costs scaled quadratically based on the number of SAN entries multiplied by the hostname's label count. Because x509.Verify validates hostnames before building the certificate chain, this overhead occurred even for untrusted certificates.

CVSS3: 6.5
1%
Низкий
около 2 месяцев назад
fstec логотип
BDU:2026-09275

Уязвимость компонента crypto/x509 языка программирования Go, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
1%
Низкий
около 2 месяцев назад
redos логотип
ROS-20260710-73-0030

Уязвимость mimir

CVSS3: 7.5
1%
Низкий
21 день назад
redos логотип
ROS-20260707-73-0036

Уязвимость golang

CVSS3: 7.5
1%
Низкий
24 дня назад
rocky логотип
RLSA-2026:35832

Important: golang-github-openprinting-ipp-usb security update

24 дня назад
rocky логотип
RLSA-2026:29981

Moderate: golang security, bug fix, and enhancement update

около 1 месяца назад
rocky логотип
RLSA-2026:9044

Important: osbuild-composer security update

1%
Низкий
2 месяца назад
rocky логотип
RLSA-2026:8841

Important: go-rpm-macros security update

1%
Низкий
3 месяца назад

Уязвимостей на страницу