Количество 236
Количество 236
CVE-2026-32281
Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.
CVE-2026-32281
Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.
CVE-2026-32281
Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.
CVE-2026-32281
Inefficient policy validation in crypto/x509
CVE-2026-32281
Validating certificate chains which use policies is unexpectedly ineff ...
ALT-PU-2026-2040
ALT-PU-2026-2040: package `golang` update to version 1.25.6-alt2
CVE-2026-32282
On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.
CVE-2026-32282
On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.
CVE-2026-32282
On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.
CVE-2026-32282
TOCTOU permits root escape on Linux via Root.Chmod in os in internal/syscall/unix
CVE-2026-32282
On Linux, if the target of Root.Chmod is replaced with a symlink while ...
openSUSE-SU-2026:20620-1
Security update for rclone
ALT-PU-2026-1427
ALT-PU-2026-1427: package `golang` update to version 1.24.12-alt1
openSUSE-SU-2026:20301-1
Security update for go1.25-openssl
SUSE-SU-2026:0308-1
Security update for go1.24-openssl
SUSE-SU-2026:0296-1
Security update for go1.24-openssl
openSUSE-SU-2026:20308-1
Security update for go1.24-openssl
SUSE-SU-2026:0298-1
Security update for go1.25-openssl
SUSE-SU-2026:0297-1
Security update for go1.25-openssl
ROS-20260430-80-0008
Уязвимость golang
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-32281 Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool. | CVSS3: 7.5 | 0% Низкий | 6 месяцев назад | |
CVE-2026-32281 Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool. | CVSS3: 5.9 | 0% Низкий | 6 месяцев назад | |
CVE-2026-32281 Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool. | CVSS3: 7.5 | 0% Низкий | 6 месяцев назад | |
CVE-2026-32281 Inefficient policy validation in crypto/x509 | 0% Низкий | 6 месяцев назад | ||
CVE-2026-32281 Validating certificate chains which use policies is unexpectedly ineff ... | CVSS3: 7.5 | 0% Низкий | 6 месяцев назад | |
ALT-PU-2026-2040 ALT-PU-2026-2040: package `golang` update to version 1.25.6-alt2 | CVSS3: 10 | 8 месяцев назад | ||
CVE-2026-32282 On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation. | CVSS3: 6.4 | 0% Низкий | 6 месяцев назад | |
CVE-2026-32282 On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation. | CVSS3: 7.8 | 0% Низкий | 6 месяцев назад | |
CVE-2026-32282 On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation. | CVSS3: 6.4 | 0% Низкий | 6 месяцев назад | |
CVE-2026-32282 TOCTOU permits root escape on Linux via Root.Chmod in os in internal/syscall/unix | 0% Низкий | 6 месяцев назад | ||
CVE-2026-32282 On Linux, if the target of Root.Chmod is replaced with a symlink while ... | CVSS3: 6.4 | 0% Низкий | 6 месяцев назад | |
openSUSE-SU-2026:20620-1 Security update for rclone | 5 месяцев назад | |||
ALT-PU-2026-1427 ALT-PU-2026-1427: package `golang` update to version 1.24.12-alt1 | CVSS3: 10 | 8 месяцев назад | ||
openSUSE-SU-2026:20301-1 Security update for go1.25-openssl | 7 месяцев назад | |||
SUSE-SU-2026:0308-1 Security update for go1.24-openssl | 8 месяцев назад | |||
SUSE-SU-2026:0296-1 Security update for go1.24-openssl | 8 месяцев назад | |||
openSUSE-SU-2026:20308-1 Security update for go1.24-openssl | 7 месяцев назад | |||
SUSE-SU-2026:0298-1 Security update for go1.25-openssl | 8 месяцев назад | |||
SUSE-SU-2026:0297-1 Security update for go1.25-openssl | 8 месяцев назад | |||
ROS-20260430-80-0008 Уязвимость golang | CVSS3: 7.5 | 0% Низкий | 5 месяцев назад |
Уязвимостей на страницу