Логотип exploitDog
bind:"CVE-2024-24788" OR bind:"CVE-2024-24789" OR bind:"CVE-2024-24790"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2024-24788" OR bind:"CVE-2024-24789" OR bind:"CVE-2024-24790"

Количество 52

Количество 52

github логотип

GHSA-2jwv-jmq4-4j3r

около 1 года назад

A malformed DNS message in response to a query can cause the Lookup functions to get stuck in an infinite loop.

EPSS: Низкий
oracle-oval логотип

ELSA-2024-9277

7 месяцев назад

ELSA-2024-9277: oci-seccomp-bpf-hook security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-9200

7 месяцев назад

ELSA-2024-9200: runc security update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2024-07420

около 1 года назад

Уязвимость компонента net языка программирования Go, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
EPSS: Низкий
redos логотип

ROS-20240826-20

10 месяцев назад

Множественные уязвимости stolon

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1587-1

около 1 года назад

Security update for go1.22

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1573-1

около 1 года назад

Security update for go1.22

EPSS: Низкий
oracle-oval логотип

ELSA-2024-9089

7 месяцев назад

ELSA-2024-9089: containernetworking-plugins security update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3755-1

8 месяцев назад

Security update for go1.21-openssl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3089-1

10 месяцев назад

Security update for go1.21-openssl

EPSS: Низкий
ubuntu логотип

CVE-2024-24789

около 1 года назад

The archive/zip package's handling of certain types of invalid zip files differs from the behavior of most zip implementations. This misalignment could be exploited to create an zip file with contents that vary depending on the implementation reading the file. The archive/zip package now rejects files containing these errors.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2024-24789

около 1 года назад

The archive/zip package's handling of certain types of invalid zip files differs from the behavior of most zip implementations. This misalignment could be exploited to create an zip file with contents that vary depending on the implementation reading the file. The archive/zip package now rejects files containing these errors.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2024-24789

около 1 года назад

The archive/zip package's handling of certain types of invalid zip files differs from the behavior of most zip implementations. This misalignment could be exploited to create an zip file with contents that vary depending on the implementation reading the file. The archive/zip package now rejects files containing these errors.

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2024-24789

около 1 года назад

The archive/zip package's handling of certain types of invalid zip fil ...

CVSS3: 5.5
EPSS: Низкий
ubuntu логотип

CVE-2024-24790

около 1 года назад

The various Is methods (IsPrivate, IsLoopback, etc) did not work as expected for IPv4-mapped IPv6 addresses, returning false for addresses which would return true in their traditional IPv4 forms.

CVSS3: 9.8
EPSS: Низкий
redhat логотип

CVE-2024-24790

около 1 года назад

The various Is methods (IsPrivate, IsLoopback, etc) did not work as expected for IPv4-mapped IPv6 addresses, returning false for addresses which would return true in their traditional IPv4 forms.

CVSS3: 6.7
EPSS: Низкий
nvd логотип

CVE-2024-24790

около 1 года назад

The various Is methods (IsPrivate, IsLoopback, etc) did not work as expected for IPv4-mapped IPv6 addresses, returning false for addresses which would return true in their traditional IPv4 forms.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2024-24790

около 1 года назад

The various Is methods (IsPrivate, IsLoopback, etc) did not work as ex ...

CVSS3: 9.8
EPSS: Низкий
oracle-oval логотип

ELSA-2024-9098

7 месяцев назад

ELSA-2024-9098: skopeo security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-6969

9 месяцев назад

ELSA-2024-6969: container-tools:ol8 security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2jwv-jmq4-4j3r

A malformed DNS message in response to a query can cause the Lookup functions to get stuck in an infinite loop.

0%
Низкий
около 1 года назад
oracle-oval логотип
ELSA-2024-9277

ELSA-2024-9277: oci-seccomp-bpf-hook security update (MODERATE)

7 месяцев назад
oracle-oval логотип
ELSA-2024-9200

ELSA-2024-9200: runc security update (MODERATE)

7 месяцев назад
fstec логотип
BDU:2024-07420

Уязвимость компонента net языка программирования Go, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
0%
Низкий
около 1 года назад
redos логотип
ROS-20240826-20

Множественные уязвимости stolon

CVSS3: 7.5
10 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:1587-1

Security update for go1.22

около 1 года назад
suse-cvrf логотип
SUSE-SU-2024:1573-1

Security update for go1.22

около 1 года назад
oracle-oval логотип
ELSA-2024-9089

ELSA-2024-9089: containernetworking-plugins security update (MODERATE)

7 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3755-1

Security update for go1.21-openssl

8 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3089-1

Security update for go1.21-openssl

10 месяцев назад
ubuntu логотип
CVE-2024-24789

The archive/zip package's handling of certain types of invalid zip files differs from the behavior of most zip implementations. This misalignment could be exploited to create an zip file with contents that vary depending on the implementation reading the file. The archive/zip package now rejects files containing these errors.

CVSS3: 5.5
0%
Низкий
около 1 года назад
redhat логотип
CVE-2024-24789

The archive/zip package's handling of certain types of invalid zip files differs from the behavior of most zip implementations. This misalignment could be exploited to create an zip file with contents that vary depending on the implementation reading the file. The archive/zip package now rejects files containing these errors.

CVSS3: 7.5
0%
Низкий
около 1 года назад
nvd логотип
CVE-2024-24789

The archive/zip package's handling of certain types of invalid zip files differs from the behavior of most zip implementations. This misalignment could be exploited to create an zip file with contents that vary depending on the implementation reading the file. The archive/zip package now rejects files containing these errors.

CVSS3: 5.5
0%
Низкий
около 1 года назад
debian логотип
CVE-2024-24789

The archive/zip package's handling of certain types of invalid zip fil ...

CVSS3: 5.5
0%
Низкий
около 1 года назад
ubuntu логотип
CVE-2024-24790

The various Is methods (IsPrivate, IsLoopback, etc) did not work as expected for IPv4-mapped IPv6 addresses, returning false for addresses which would return true in their traditional IPv4 forms.

CVSS3: 9.8
0%
Низкий
около 1 года назад
redhat логотип
CVE-2024-24790

The various Is methods (IsPrivate, IsLoopback, etc) did not work as expected for IPv4-mapped IPv6 addresses, returning false for addresses which would return true in their traditional IPv4 forms.

CVSS3: 6.7
0%
Низкий
около 1 года назад
nvd логотип
CVE-2024-24790

The various Is methods (IsPrivate, IsLoopback, etc) did not work as expected for IPv4-mapped IPv6 addresses, returning false for addresses which would return true in their traditional IPv4 forms.

CVSS3: 9.8
0%
Низкий
около 1 года назад
debian логотип
CVE-2024-24790

The various Is methods (IsPrivate, IsLoopback, etc) did not work as ex ...

CVSS3: 9.8
0%
Низкий
около 1 года назад
oracle-oval логотип
ELSA-2024-9098

ELSA-2024-9098: skopeo security update (MODERATE)

7 месяцев назад
oracle-oval логотип
ELSA-2024-6969

ELSA-2024-6969: container-tools:ol8 security update (MODERATE)

9 месяцев назад

Уязвимостей на страницу