Количество 182
Количество 182
openSUSE-SU-2026:20619-1
Security update for coredns
ROS-20260507-73-0012
Уязвимость golang
CVE-2026-32281
Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.
CVE-2026-32281
Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.
CVE-2026-32281
Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.
CVE-2026-32281
Inefficient policy validation in crypto/x509
CVE-2026-32281
Validating certificate chains which use policies is unexpectedly ineff ...
CVE-2026-32282
On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.
CVE-2026-32282
On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.
CVE-2026-32282
On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.
CVE-2026-32282
TOCTOU permits root escape on Linux via Root.Chmod in os in internal/syscall/unix
CVE-2026-32282
On Linux, if the target of Root.Chmod is replaced with a symlink while ...
openSUSE-SU-2026:20620-1
Security update for rclone
openSUSE-SU-2026:20301-1
Security update for go1.25-openssl
SUSE-SU-2026:0308-1
Security update for go1.24-openssl
SUSE-SU-2026:0296-1
Security update for go1.24-openssl
openSUSE-SU-2026:20308-1
Security update for go1.24-openssl
RLSA-2026:27740
Moderate: golang-github-openprinting-ipp-usb security update
GHSA-gjvh-7jh8-7xhm
Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.
BDU:2026-07251
Уязвимость языка программирования Go, связанная с ошибками процедуры подтверждения подлинности сертификата, позволяющая нарушителю вызвать отказ в обслуживании
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
openSUSE-SU-2026:20619-1 Security update for coredns | 2 месяца назад | |||
ROS-20260507-73-0012 Уязвимость golang | CVSS3: 7.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-32281 Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool. | CVSS3: 7.5 | 0% Низкий | 3 месяца назад | |
CVE-2026-32281 Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool. | CVSS3: 5.9 | 0% Низкий | 3 месяца назад | |
CVE-2026-32281 Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool. | CVSS3: 7.5 | 0% Низкий | 3 месяца назад | |
CVE-2026-32281 Inefficient policy validation in crypto/x509 | 0% Низкий | 2 месяца назад | ||
CVE-2026-32281 Validating certificate chains which use policies is unexpectedly ineff ... | CVSS3: 7.5 | 0% Низкий | 3 месяца назад | |
CVE-2026-32282 On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation. | CVSS3: 6.4 | 0% Низкий | 3 месяца назад | |
CVE-2026-32282 On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation. | CVSS3: 7.8 | 0% Низкий | 3 месяца назад | |
CVE-2026-32282 On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation. | CVSS3: 6.4 | 0% Низкий | 3 месяца назад | |
CVE-2026-32282 TOCTOU permits root escape on Linux via Root.Chmod in os in internal/syscall/unix | 0% Низкий | 25 дней назад | ||
CVE-2026-32282 On Linux, if the target of Root.Chmod is replaced with a symlink while ... | CVSS3: 6.4 | 0% Низкий | 3 месяца назад | |
openSUSE-SU-2026:20620-1 Security update for rclone | 2 месяца назад | |||
openSUSE-SU-2026:20301-1 Security update for go1.25-openssl | 4 месяца назад | |||
SUSE-SU-2026:0308-1 Security update for go1.24-openssl | 5 месяцев назад | |||
SUSE-SU-2026:0296-1 Security update for go1.24-openssl | 5 месяцев назад | |||
openSUSE-SU-2026:20308-1 Security update for go1.24-openssl | 4 месяца назад | |||
RLSA-2026:27740 Moderate: golang-github-openprinting-ipp-usb security update | 0% Низкий | 4 дня назад | ||
GHSA-gjvh-7jh8-7xhm Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool. | CVSS3: 7.5 | 0% Низкий | 3 месяца назад | |
BDU:2026-07251 Уязвимость языка программирования Go, связанная с ошибками процедуры подтверждения подлинности сертификата, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 0% Низкий | 3 месяца назад |
Уязвимостей на страницу