Количество 42
Количество 42
RLSA-2025:7592
Important: yggdrasil security update
ELSA-2025-7592
ELSA-2025-7592: yggdrasil security update (IMPORTANT)
SUSE-SU-2025:0297-1
Security update for govulncheck-vulndb
CVE-2025-22866
Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols.
CVE-2025-22866
Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols.
CVE-2025-22866
Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols.
CVE-2025-22866
Timing sidechannel for P-256 on ppc64le in crypto/internal/nistec
CVE-2025-22866
Due to the usage of a variable time instruction in the assembly implem ...
CVE-2024-45341
A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.
CVE-2024-45341
A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.
CVE-2024-45341
A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.
CVE-2024-45341
Usage of IPv6 zone IDs can bypass URI name constraints in crypto/x509
CVE-2024-45341
A certificate with a URI which has a IPv6 address with a zone ID may i ...
SUSE-SU-2025:0393-1
Security update for go1.23
SUSE-SU-2025:0392-1
Security update for go1.22
GHSA-3whm-j4xm-rv8x
Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols.
BDU:2025-03456
Уязвимость компонента crypto-elliptic языка программирования Golang, позволяющая нарушителю получить доступ к конфиденциальной информации
GHSA-3f6r-qh9c-x6mm
A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.
BDU:2025-03335
Уязвимость языка программирования Golang, связанная с неправильной проверкой входных данных, позволяющая нарушителю обойти внедренные ограничения безопасности
SUSE-SU-2025:0431-1
Security update for go1.24
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
RLSA-2025:7592 Important: yggdrasil security update | 3 месяца назад | |||
ELSA-2025-7592 ELSA-2025-7592: yggdrasil security update (IMPORTANT) | 6 месяцев назад | |||
SUSE-SU-2025:0297-1 Security update for govulncheck-vulndb | 11 месяцев назад | |||
CVE-2025-22866 Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols. | CVSS3: 4 | 0% Низкий | 11 месяцев назад | |
CVE-2025-22866 Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols. | CVSS3: 5.3 | 0% Низкий | 11 месяцев назад | |
CVE-2025-22866 Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols. | CVSS3: 4 | 0% Низкий | 11 месяцев назад | |
CVE-2025-22866 Timing sidechannel for P-256 on ppc64le in crypto/internal/nistec | CVSS3: 8.4 | 0% Низкий | 4 месяца назад | |
CVE-2025-22866 Due to the usage of a variable time instruction in the assembly implem ... | CVSS3: 4 | 0% Низкий | 11 месяцев назад | |
CVE-2024-45341 A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs. | CVSS3: 6.1 | 0% Низкий | 11 месяцев назад | |
CVE-2024-45341 A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs. | CVSS3: 4.2 | 0% Низкий | 11 месяцев назад | |
CVE-2024-45341 A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs. | CVSS3: 6.1 | 0% Низкий | 11 месяцев назад | |
CVE-2024-45341 Usage of IPv6 zone IDs can bypass URI name constraints in crypto/x509 | CVSS3: 6.1 | 0% Низкий | 13 дней назад | |
CVE-2024-45341 A certificate with a URI which has a IPv6 address with a zone ID may i ... | CVSS3: 6.1 | 0% Низкий | 11 месяцев назад | |
SUSE-SU-2025:0393-1 Security update for go1.23 | 0% Низкий | 10 месяцев назад | ||
SUSE-SU-2025:0392-1 Security update for go1.22 | 0% Низкий | 10 месяцев назад | ||
GHSA-3whm-j4xm-rv8x Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols. | CVSS3: 8.4 | 0% Низкий | 11 месяцев назад | |
BDU:2025-03456 Уязвимость компонента crypto-elliptic языка программирования Golang, позволяющая нарушителю получить доступ к конфиденциальной информации | CVSS3: 4 | 0% Низкий | 11 месяцев назад | |
GHSA-3f6r-qh9c-x6mm A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs. | CVSS3: 6.1 | 0% Низкий | 11 месяцев назад | |
BDU:2025-03335 Уязвимость языка программирования Golang, связанная с неправильной проверкой входных данных, позволяющая нарушителю обойти внедренные ограничения безопасности | CVSS3: 6.1 | 0% Низкий | 11 месяцев назад | |
SUSE-SU-2025:0431-1 Security update for go1.24 | 10 месяцев назад |
Уязвимостей на страницу