Количество 130
Количество 130
CVE-2026-33810
When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to wildcard DNS SANs which use a different case than the constraint. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.
CVE-2026-33810
When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to wildcard DNS SANs which use a different case than the constraint. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.
CVE-2026-33810
Case-sensitive excludedSubtrees name constraints cause Auth Bypass in crypto/x509
CVE-2026-33810
When verifying a certificate chain containing excluded DNS constraints ...
ROS-20260729-73-0017
Уязвимость coredns
ROS-20260710-73-0031
Уязвимость mimir
ROS-20260430-73-0011
Уязвимость golang
CVE-2026-32283
If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection can deadlock, causing uncontrolled consumption of resources. This can lead to a denial of service. This only affects TLS 1.3.
CVE-2026-32283
If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection can deadlock, causing uncontrolled consumption of resources. This can lead to a denial of service. This only affects TLS 1.3.
CVE-2026-32283
If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection can deadlock, causing uncontrolled consumption of resources. This can lead to a denial of service. This only affects TLS 1.3.
CVE-2026-32283
Unauthenticated TLS 1.3 KeyUpdate record can cause persistent connection retention and DoS in crypto/tls
CVE-2026-32283
If one side of the TLS connection sends multiple key update messages p ...
GHSA-fv83-x2xw-2j55
When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to wildcard DNS SANs which use a different case than the constraint. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.
BDU:2026-07331
Уязвимость пакета crypto/x509 языка программирования Go, позволяющая нарушителю проводить атаки типа "человек посередине"
ROS-20260729-73-0029
Уязвимость coredns
ROS-20260430-73-0016
Уязвимость golang
RLSA-2026:19139
Important: go-fdo-client security update
RLSA-2026:11881
Important: grafana-pcp security update
GHSA-jrg3-gfjw-hm96
If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection can deadlock, causing uncontrolled consumption of resources. This can lead to a denial of service. This only affects TLS 1.3.
ELSA-2026-19139
ELSA-2026-19139: go-fdo-client security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-33810 When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to wildcard DNS SANs which use a different case than the constraint. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool. | CVSS3: 8.8 | 0% Низкий | 4 месяца назад | |
CVE-2026-33810 When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to wildcard DNS SANs which use a different case than the constraint. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool. | CVSS3: 8.2 | 0% Низкий | 4 месяца назад | |
CVE-2026-33810 Case-sensitive excludedSubtrees name constraints cause Auth Bypass in crypto/x509 | CVSS3: 5.9 | 0% Низкий | 4 месяца назад | |
CVE-2026-33810 When verifying a certificate chain containing excluded DNS constraints ... | CVSS3: 8.2 | 0% Низкий | 4 месяца назад | |
ROS-20260729-73-0017 Уязвимость coredns | CVSS3: 6.4 | 0% Низкий | 14 дней назад | |
ROS-20260710-73-0031 Уязвимость mimir | CVSS3: 6.4 | 0% Низкий | около 1 месяца назад | |
ROS-20260430-73-0011 Уязвимость golang | CVSS3: 6.4 | 0% Низкий | 3 месяца назад | |
CVE-2026-32283 If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection can deadlock, causing uncontrolled consumption of resources. This can lead to a denial of service. This only affects TLS 1.3. | CVSS3: 7.5 | 1% Низкий | 4 месяца назад | |
CVE-2026-32283 If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection can deadlock, causing uncontrolled consumption of resources. This can lead to a denial of service. This only affects TLS 1.3. | CVSS3: 7.5 | 1% Низкий | 4 месяца назад | |
CVE-2026-32283 If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection can deadlock, causing uncontrolled consumption of resources. This can lead to a denial of service. This only affects TLS 1.3. | CVSS3: 7.5 | 1% Низкий | 4 месяца назад | |
CVE-2026-32283 Unauthenticated TLS 1.3 KeyUpdate record can cause persistent connection retention and DoS in crypto/tls | 1% Низкий | 4 месяца назад | ||
CVE-2026-32283 If one side of the TLS connection sends multiple key update messages p ... | CVSS3: 7.5 | 1% Низкий | 4 месяца назад | |
GHSA-fv83-x2xw-2j55 When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to wildcard DNS SANs which use a different case than the constraint. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool. | CVSS3: 7.5 | 0% Низкий | 4 месяца назад | |
BDU:2026-07331 Уязвимость пакета crypto/x509 языка программирования Go, позволяющая нарушителю проводить атаки типа "человек посередине" | CVSS3: 8.2 | 0% Низкий | 4 месяца назад | |
ROS-20260729-73-0029 Уязвимость coredns | CVSS3: 8.2 | 0% Низкий | 14 дней назад | |
ROS-20260430-73-0016 Уязвимость golang | CVSS3: 8.2 | 0% Низкий | 3 месяца назад | |
RLSA-2026:19139 Important: go-fdo-client security update | 1% Низкий | 2 месяца назад | ||
RLSA-2026:11881 Important: grafana-pcp security update | 1% Низкий | 3 месяца назад | ||
GHSA-jrg3-gfjw-hm96 If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection can deadlock, causing uncontrolled consumption of resources. This can lead to a denial of service. This only affects TLS 1.3. | CVSS3: 7.5 | 1% Низкий | 4 месяца назад | |
ELSA-2026-19139 ELSA-2026-19139: go-fdo-client security update (IMPORTANT) | 1% Низкий | 26 дней назад |
Уязвимостей на страницу