Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 13

Количество 13

ubuntu логотип

CVE-2026-56862

23 дня назад

Handshake messages, such as KeyUpdate, are always considered as state-advancing, regardless of whether a handshake has been completed or not. As a result, a malicious client can keep sending KeyUpdate messages to force the server to keep performing key derivation operations indefinitely.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2026-56862

23 дня назад

Handshake messages, such as KeyUpdate, are always considered as state-advancing, regardless of whether a handshake has been completed or not. As a result, a malicious client can keep sending KeyUpdate messages to force the server to keep performing key derivation operations indefinitely.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-56862

23 дня назад

Handshake messages, such as KeyUpdate, are always considered as state-advancing, regardless of whether a handshake has been completed or not. As a result, a malicious client can keep sending KeyUpdate messages to force the server to keep performing key derivation operations indefinitely.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2026-56862

16 дней назад

Limit handshake messages we are willing to accept post-handshake in crypto/tls

EPSS: Низкий
debian логотип

CVE-2026-56862

23 дня назад

Handshake messages, such as KeyUpdate, are always considered as state- ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-7qch-w8m5-g3h3

23 дня назад

Handshake messages, such as KeyUpdate, are always considered as state-advancing, regardless of whether a handshake has been completed or not. As a result, a malicious client can keep sending KeyUpdate messages to force the server to keep performing key derivation operations indefinitely.

CVSS3: 7.5
EPSS: Низкий
rocky логотип

RLSA-2026:60305

10 дней назад

Important: go-toolset:rhel8 security, bug fix, and enhancement update

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21593-1

17 дней назад

Security update for go1.26

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21592-1

17 дней назад

Security update for go1.25

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3800-1

11 дней назад

Security update for go1.25-openssl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3799-1

11 дней назад

Security update for go1.26-openssl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3641-1

18 дней назад

Security update for go1.26

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3640-1

18 дней назад

Security update for go1.25

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-56862

Handshake messages, such as KeyUpdate, are always considered as state-advancing, regardless of whether a handshake has been completed or not. As a result, a malicious client can keep sending KeyUpdate messages to force the server to keep performing key derivation operations indefinitely.

CVSS3: 7.5
0%
Низкий
23 дня назад
redhat логотип
CVE-2026-56862

Handshake messages, such as KeyUpdate, are always considered as state-advancing, regardless of whether a handshake has been completed or not. As a result, a malicious client can keep sending KeyUpdate messages to force the server to keep performing key derivation operations indefinitely.

CVSS3: 7.5
0%
Низкий
23 дня назад
nvd логотип
CVE-2026-56862

Handshake messages, such as KeyUpdate, are always considered as state-advancing, regardless of whether a handshake has been completed or not. As a result, a malicious client can keep sending KeyUpdate messages to force the server to keep performing key derivation operations indefinitely.

CVSS3: 7.5
0%
Низкий
23 дня назад
msrc логотип
CVE-2026-56862

Limit handshake messages we are willing to accept post-handshake in crypto/tls

0%
Низкий
16 дней назад
debian логотип
CVE-2026-56862

Handshake messages, such as KeyUpdate, are always considered as state- ...

CVSS3: 7.5
0%
Низкий
23 дня назад
github логотип
GHSA-7qch-w8m5-g3h3

Handshake messages, such as KeyUpdate, are always considered as state-advancing, regardless of whether a handshake has been completed or not. As a result, a malicious client can keep sending KeyUpdate messages to force the server to keep performing key derivation operations indefinitely.

CVSS3: 7.5
0%
Низкий
23 дня назад
rocky логотип
RLSA-2026:60305

Important: go-toolset:rhel8 security, bug fix, and enhancement update

10 дней назад
suse-cvrf логотип
openSUSE-SU-2026:21593-1

Security update for go1.26

17 дней назад
suse-cvrf логотип
openSUSE-SU-2026:21592-1

Security update for go1.25

17 дней назад
suse-cvrf логотип
SUSE-SU-2026:3800-1

Security update for go1.25-openssl

11 дней назад
suse-cvrf логотип
SUSE-SU-2026:3799-1

Security update for go1.26-openssl

11 дней назад
suse-cvrf логотип
SUSE-SU-2026:3641-1

Security update for go1.26

18 дней назад
suse-cvrf логотип
SUSE-SU-2026:3640-1

Security update for go1.25

18 дней назад

Уязвимостей на страницу