Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 144

Количество 144

rocky логотип

RLSA-2026:38995

16 дней назад

Important: go-toolset:rhel8 security, bug fix, and enhancement update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-38995

17 дней назад

ELSA-2026-38995: go-toolset:ol8 security, bug fix, and enhancement update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-46395

4 дня назад

ELSA-2026-46395: go-fdo-server security update (IMPORTANT)

EPSS: Низкий
rocky логотип

RLSA-2026:39573

16 дней назад

Important: yggdrasil security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-39573

15 дней назад

ELSA-2026-39573: yggdrasil security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3102-1

14 дней назад

Security update for go1.26-openssl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3047-1

16 дней назад

Security update for go1.26-openssl

EPSS: Низкий
rocky логотип

RLSA-2026:34359

26 дней назад

Important: opentelemetry-collector security update

EPSS: Низкий
rocky логотип

RLSA-2026:34357

24 дня назад

Important: opentelemetry-collector security update

EPSS: Низкий
rocky логотип

RLSA-2026:37436

18 дней назад

Important: golang security, bug fix, and enhancement update

EPSS: Низкий
rocky логотип

RLSA-2026:37435

18 дней назад

Important: golang security, bug fix, and enhancement update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-37436

15 дней назад

ELSA-2026-37436: golang security, bug fix, and enhancement update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-37435

21 день назад

ELSA-2026-37435: golang security, bug fix, and enhancement update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3151-1

10 дней назад

Security update for go1.25-openssl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3046-1

16 дней назад

Security update for go1.25-openssl

EPSS: Низкий
ubuntu логотип

CVE-2026-27145

около 2 месяцев назад

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SAN list, verification costs scaled quadratically based on the number of SAN entries multiplied by the hostname's label count. Because x509.Verify validates hostnames before building the certificate chain, this overhead occurred even for untrusted certificates.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2026-27145

около 2 месяцев назад

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SAN list, verification costs scaled quadratically based on the number of SAN entries multiplied by the hostname's label count. Because x509.Verify validates hostnames before building the certificate chain, this overhead occurred even for untrusted certificates.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-27145

около 2 месяцев назад

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SAN list, verification costs scaled quadratically based on the number of SAN entries multiplied by the hostname's label count. Because x509.Verify validates hostnames before building the certificate chain, this overhead occurred even for untrusted certificates.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2026-27145

около 2 месяцев назад

Inefficient candidate hostname parsing in crypto/x509

EPSS: Низкий
debian логотип

CVE-2026-27145

около 2 месяцев назад

*x509.Certificate).VerifyHostname previously called matchHostnames in ...

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2026:38995

Important: go-toolset:rhel8 security, bug fix, and enhancement update

16 дней назад
oracle-oval логотип
ELSA-2026-38995

ELSA-2026-38995: go-toolset:ol8 security, bug fix, and enhancement update (IMPORTANT)

17 дней назад
oracle-oval логотип
ELSA-2026-46395

ELSA-2026-46395: go-fdo-server security update (IMPORTANT)

4 дня назад
rocky логотип
RLSA-2026:39573

Important: yggdrasil security update

16 дней назад
oracle-oval логотип
ELSA-2026-39573

ELSA-2026-39573: yggdrasil security update (IMPORTANT)

15 дней назад
suse-cvrf логотип
SUSE-SU-2026:3102-1

Security update for go1.26-openssl

14 дней назад
suse-cvrf логотип
SUSE-SU-2026:3047-1

Security update for go1.26-openssl

16 дней назад
rocky логотип
RLSA-2026:34359

Important: opentelemetry-collector security update

26 дней назад
rocky логотип
RLSA-2026:34357

Important: opentelemetry-collector security update

24 дня назад
rocky логотип
RLSA-2026:37436

Important: golang security, bug fix, and enhancement update

18 дней назад
rocky логотип
RLSA-2026:37435

Important: golang security, bug fix, and enhancement update

18 дней назад
oracle-oval логотип
ELSA-2026-37436

ELSA-2026-37436: golang security, bug fix, and enhancement update (IMPORTANT)

15 дней назад
oracle-oval логотип
ELSA-2026-37435

ELSA-2026-37435: golang security, bug fix, and enhancement update (IMPORTANT)

21 день назад
suse-cvrf логотип
SUSE-SU-2026:3151-1

Security update for go1.25-openssl

10 дней назад
suse-cvrf логотип
SUSE-SU-2026:3046-1

Security update for go1.25-openssl

16 дней назад
ubuntu логотип
CVE-2026-27145

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SAN list, verification costs scaled quadratically based on the number of SAN entries multiplied by the hostname's label count. Because x509.Verify validates hostnames before building the certificate chain, this overhead occurred even for untrusted certificates.

CVSS3: 6.5
1%
Низкий
около 2 месяцев назад
redhat логотип
CVE-2026-27145

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SAN list, verification costs scaled quadratically based on the number of SAN entries multiplied by the hostname's label count. Because x509.Verify validates hostnames before building the certificate chain, this overhead occurred even for untrusted certificates.

CVSS3: 7.5
1%
Низкий
около 2 месяцев назад
nvd логотип
CVE-2026-27145

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SAN list, verification costs scaled quadratically based on the number of SAN entries multiplied by the hostname's label count. Because x509.Verify validates hostnames before building the certificate chain, this overhead occurred even for untrusted certificates.

CVSS3: 6.5
1%
Низкий
около 2 месяцев назад
msrc логотип
CVE-2026-27145

Inefficient candidate hostname parsing in crypto/x509

1%
Низкий
около 2 месяцев назад
debian логотип
CVE-2026-27145

*x509.Certificate).VerifyHostname previously called matchHostnames in ...

CVSS3: 6.5
1%
Низкий
около 2 месяцев назад

Уязвимостей на страницу