Количество 40
Количество 40
ELSA-2025-7592
ELSA-2025-7592: yggdrasil security update (IMPORTANT)
CVE-2025-22866
Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols.
CVE-2025-22866
Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols.
CVE-2025-22866
Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols.
CVE-2025-22866
Timing sidechannel for P-256 on ppc64le in crypto/internal/nistec
CVE-2025-22866
Due to the usage of a variable time instruction in the assembly implem ...
CVE-2024-45341
A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.
CVE-2024-45341
A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.
CVE-2024-45341
A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.
CVE-2024-45341
Usage of IPv6 zone IDs can bypass URI name constraints in crypto/x509
CVE-2024-45341
A certificate with a URI which has a IPv6 address with a zone ID may i ...
SUSE-SU-2025:0393-1
Security update for go1.23
SUSE-SU-2025:0392-1
Security update for go1.22
GHSA-3whm-j4xm-rv8x
Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols.
BDU:2025-03456
Уязвимость компонента crypto-elliptic языка программирования Golang, позволяющая нарушителю получить доступ к конфиденциальной информации
GHSA-3f6r-qh9c-x6mm
A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.
BDU:2025-03335
Уязвимость языка программирования Golang, связанная с неправильной проверкой входных данных, позволяющая нарушителю обойти внедренные ограничения безопасности
SUSE-SU-2025:0431-1
Security update for go1.24
ROS-20250226-17
Уязвимость golang
ROS-20250806-13
Множественные уязвимости portainer-ce
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
ELSA-2025-7592 ELSA-2025-7592: yggdrasil security update (IMPORTANT) | около 1 года назад | |||
CVE-2025-22866 Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols. | CVSS3: 4 | 0% Низкий | больше 1 года назад | |
CVE-2025-22866 Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols. | CVSS3: 5.3 | 0% Низкий | больше 1 года назад | |
CVE-2025-22866 Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols. | CVSS3: 4 | 0% Низкий | больше 1 года назад | |
CVE-2025-22866 Timing sidechannel for P-256 on ppc64le in crypto/internal/nistec | CVSS3: 8.4 | 0% Низкий | 11 месяцев назад | |
CVE-2025-22866 Due to the usage of a variable time instruction in the assembly implem ... | CVSS3: 4 | 0% Низкий | больше 1 года назад | |
CVE-2024-45341 A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs. | CVSS3: 6.1 | 0% Низкий | больше 1 года назад | |
CVE-2024-45341 A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs. | CVSS3: 4.2 | 0% Низкий | больше 1 года назад | |
CVE-2024-45341 A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs. | CVSS3: 6.1 | 0% Низкий | больше 1 года назад | |
CVE-2024-45341 Usage of IPv6 zone IDs can bypass URI name constraints in crypto/x509 | CVSS3: 6.1 | 0% Низкий | 8 месяцев назад | |
CVE-2024-45341 A certificate with a URI which has a IPv6 address with a zone ID may i ... | CVSS3: 6.1 | 0% Низкий | больше 1 года назад | |
SUSE-SU-2025:0393-1 Security update for go1.23 | 0% Низкий | больше 1 года назад | ||
SUSE-SU-2025:0392-1 Security update for go1.22 | 0% Низкий | больше 1 года назад | ||
GHSA-3whm-j4xm-rv8x Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols. | CVSS3: 8.4 | 0% Низкий | больше 1 года назад | |
BDU:2025-03456 Уязвимость компонента crypto-elliptic языка программирования Golang, позволяющая нарушителю получить доступ к конфиденциальной информации | CVSS3: 4 | 0% Низкий | больше 1 года назад | |
GHSA-3f6r-qh9c-x6mm A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs. | CVSS3: 6.1 | 0% Низкий | больше 1 года назад | |
BDU:2025-03335 Уязвимость языка программирования Golang, связанная с неправильной проверкой входных данных, позволяющая нарушителю обойти внедренные ограничения безопасности | CVSS3: 6.1 | 0% Низкий | больше 1 года назад | |
SUSE-SU-2025:0431-1 Security update for go1.24 | больше 1 года назад | |||
ROS-20250226-17 Уязвимость golang | CVSS2: 2.1 | 0% Низкий | больше 1 года назад | |
ROS-20250806-13 Множественные уязвимости portainer-ce | CVSS3: 9.1 | 12 месяцев назад |
Уязвимостей на страницу