Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 52

Количество 52

rocky логотип

RLSA-2026:37410

21 день назад

Important: buildah security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-37410

21 день назад

ELSA-2026-37410: buildah security update (IMPORTANT)

EPSS: Низкий
rocky логотип

RLSA-2026:36199

23 дня назад

Important: buildah security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-36199

9 дней назад

ELSA-2026-36199: buildah security update (IMPORTANT)

EPSS: Низкий
rocky логотип

RLSA-2026:37123

21 день назад

Important: podman security, bug fix, and enhancement update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-37123

21 день назад

ELSA-2026-37123: podman security, bug fix, and enhancement update (IMPORTANT)

EPSS: Низкий
rocky логотип

RLSA-2026:37072

21 день назад

Important: podman security, bug fix, and enhancement update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-37072

8 дней назад

ELSA-2026-37072: podman security, bug fix, and enhancement update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20838-1

2 месяца назад

Security update for hauler

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20833-1

2 месяца назад

Security update for trivy

EPSS: Низкий
ubuntu логотип

CVE-2026-39835

2 месяца назад

SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2026-39835

2 месяца назад

SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-39835

2 месяца назад

SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil.

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2026-39835

2 месяца назад

Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2026-39835

2 месяца назад

SSH servers which use CertChecker as a public key callback without set ...

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21069-1

около 1 месяца назад

Security update for google-guest-agent

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20834-1

2 месяца назад

Security update for apptainer

EPSS: Низкий
ubuntu логотип

CVE-2026-39832

2 месяца назад

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 9.1
EPSS: Низкий
redhat логотип

CVE-2026-39832

2 месяца назад

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 8.7
EPSS: Низкий
nvd логотип

CVE-2026-39832

2 месяца назад

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 9.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2026:37410

Important: buildah security update

21 день назад
oracle-oval логотип
ELSA-2026-37410

ELSA-2026-37410: buildah security update (IMPORTANT)

21 день назад
rocky логотип
RLSA-2026:36199

Important: buildah security update

23 дня назад
oracle-oval логотип
ELSA-2026-36199

ELSA-2026-36199: buildah security update (IMPORTANT)

9 дней назад
rocky логотип
RLSA-2026:37123

Important: podman security, bug fix, and enhancement update

21 день назад
oracle-oval логотип
ELSA-2026-37123

ELSA-2026-37123: podman security, bug fix, and enhancement update (IMPORTANT)

21 день назад
rocky логотип
RLSA-2026:37072

Important: podman security, bug fix, and enhancement update

21 день назад
oracle-oval логотип
ELSA-2026-37072

ELSA-2026-37072: podman security, bug fix, and enhancement update (IMPORTANT)

8 дней назад
suse-cvrf логотип
openSUSE-SU-2026:20838-1

Security update for hauler

2 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20833-1

Security update for trivy

2 месяца назад
ubuntu логотип
CVE-2026-39835

SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil.

CVSS3: 5.3
1%
Низкий
2 месяца назад
redhat логотип
CVE-2026-39835

SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil.

CVSS3: 7.5
1%
Низкий
2 месяца назад
nvd логотип
CVE-2026-39835

SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil.

CVSS3: 5.3
1%
Низкий
2 месяца назад
msrc логотип
CVE-2026-39835

Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh

CVSS3: 5.3
1%
Низкий
2 месяца назад
debian логотип
CVE-2026-39835

SSH servers which use CertChecker as a public key callback without set ...

CVSS3: 5.3
1%
Низкий
2 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:21069-1

Security update for google-guest-agent

около 1 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20834-1

Security update for apptainer

2 месяца назад
ubuntu логотип
CVE-2026-39832

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 9.1
1%
Низкий
2 месяца назад
redhat логотип
CVE-2026-39832

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 8.7
1%
Низкий
2 месяца назад
nvd логотип
CVE-2026-39832

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 9.1
1%
Низкий
2 месяца назад

Уязвимостей на страницу