Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 164

Количество 164

rocky логотип

RLSA-2026:38995

2 месяца назад

Important: go-toolset:rhel8 security, bug fix, and enhancement update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-38995

2 месяца назад

ELSA-2026-38995: go-toolset:ol8 security, bug fix, and enhancement update (IMPORTANT)

EPSS: Низкий
rocky логотип

RLSA-2026:46395

около 2 месяцев назад

Important: go-fdo-server security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-46395

около 2 месяцев назад

ELSA-2026-46395: go-fdo-server security update (IMPORTANT)

EPSS: Низкий
rocky логотип

RLSA-2026:39573

2 месяца назад

Important: yggdrasil security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-39573

2 месяца назад

ELSA-2026-39573: yggdrasil security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3102-1

около 2 месяцев назад

Security update for go1.26-openssl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3047-1

2 месяца назад

Security update for go1.26-openssl

EPSS: Низкий
rocky логотип

RLSA-2026:34359

2 месяца назад

Important: opentelemetry-collector security update

EPSS: Низкий
rocky логотип

RLSA-2026:34357

2 месяца назад

Important: opentelemetry-collector security update

EPSS: Низкий
rocky логотип

RLSA-2026:37436

2 месяца назад

Important: golang security, bug fix, and enhancement update

EPSS: Низкий
rocky логотип

RLSA-2026:37435

2 месяца назад

Important: golang security, bug fix, and enhancement update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-37436

2 месяца назад

ELSA-2026-37436: golang security, bug fix, and enhancement update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-37435

2 месяца назад

ELSA-2026-37435: golang security, bug fix, and enhancement update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3151-1

около 2 месяцев назад

Security update for go1.25-openssl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3046-1

2 месяца назад

Security update for go1.25-openssl

EPSS: Низкий
ubuntu логотип

CVE-2026-27145

3 месяца назад

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SAN list, verification costs scaled quadratically based on the number of SAN entries multiplied by the hostname's label count. Because x509.Verify validates hostnames before building the certificate chain, this overhead occurred even for untrusted certificates.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2026-27145

3 месяца назад

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SAN list, verification costs scaled quadratically based on the number of SAN entries multiplied by the hostname's label count. Because x509.Verify validates hostnames before building the certificate chain, this overhead occurred even for untrusted certificates.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-27145

3 месяца назад

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SAN list, verification costs scaled quadratically based on the number of SAN entries multiplied by the hostname's label count. Because x509.Verify validates hostnames before building the certificate chain, this overhead occurred even for untrusted certificates.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2026-27145

3 месяца назад

Inefficient candidate hostname parsing in crypto/x509

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2026:38995

Important: go-toolset:rhel8 security, bug fix, and enhancement update

2 месяца назад
oracle-oval логотип
ELSA-2026-38995

ELSA-2026-38995: go-toolset:ol8 security, bug fix, and enhancement update (IMPORTANT)

2 месяца назад
rocky логотип
RLSA-2026:46395

Important: go-fdo-server security update

около 2 месяцев назад
oracle-oval логотип
ELSA-2026-46395

ELSA-2026-46395: go-fdo-server security update (IMPORTANT)

около 2 месяцев назад
rocky логотип
RLSA-2026:39573

Important: yggdrasil security update

2 месяца назад
oracle-oval логотип
ELSA-2026-39573

ELSA-2026-39573: yggdrasil security update (IMPORTANT)

2 месяца назад
suse-cvrf логотип
SUSE-SU-2026:3102-1

Security update for go1.26-openssl

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:3047-1

Security update for go1.26-openssl

2 месяца назад
rocky логотип
RLSA-2026:34359

Important: opentelemetry-collector security update

2 месяца назад
rocky логотип
RLSA-2026:34357

Important: opentelemetry-collector security update

2 месяца назад
rocky логотип
RLSA-2026:37436

Important: golang security, bug fix, and enhancement update

2 месяца назад
rocky логотип
RLSA-2026:37435

Important: golang security, bug fix, and enhancement update

2 месяца назад
oracle-oval логотип
ELSA-2026-37436

ELSA-2026-37436: golang security, bug fix, and enhancement update (IMPORTANT)

2 месяца назад
oracle-oval логотип
ELSA-2026-37435

ELSA-2026-37435: golang security, bug fix, and enhancement update (IMPORTANT)

2 месяца назад
suse-cvrf логотип
SUSE-SU-2026:3151-1

Security update for go1.25-openssl

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:3046-1

Security update for go1.25-openssl

2 месяца назад
ubuntu логотип
CVE-2026-27145

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SAN list, verification costs scaled quadratically based on the number of SAN entries multiplied by the hostname's label count. Because x509.Verify validates hostnames before building the certificate chain, this overhead occurred even for untrusted certificates.

CVSS3: 6.5
1%
Низкий
3 месяца назад
redhat логотип
CVE-2026-27145

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SAN list, verification costs scaled quadratically based on the number of SAN entries multiplied by the hostname's label count. Because x509.Verify validates hostnames before building the certificate chain, this overhead occurred even for untrusted certificates.

CVSS3: 7.5
1%
Низкий
3 месяца назад
nvd логотип
CVE-2026-27145

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SAN list, verification costs scaled quadratically based on the number of SAN entries multiplied by the hostname's label count. Because x509.Verify validates hostnames before building the certificate chain, this overhead occurred even for untrusted certificates.

CVSS3: 6.5
1%
Низкий
3 месяца назад
msrc логотип
CVE-2026-27145

Inefficient candidate hostname parsing in crypto/x509

1%
Низкий
3 месяца назад

Уязвимостей на страницу