Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 40

Количество 40

oracle-oval логотип

ELSA-2025-7592

около 1 года назад

ELSA-2025-7592: yggdrasil security update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2025-22866

больше 1 года назад

Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols.

CVSS3: 4
EPSS: Низкий
redhat логотип

CVE-2025-22866

больше 1 года назад

Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2025-22866

больше 1 года назад

Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols.

CVSS3: 4
EPSS: Низкий
msrc логотип

CVE-2025-22866

11 месяцев назад

Timing sidechannel for P-256 on ppc64le in crypto/internal/nistec

CVSS3: 8.4
EPSS: Низкий
debian логотип

CVE-2025-22866

больше 1 года назад

Due to the usage of a variable time instruction in the assembly implem ...

CVSS3: 4
EPSS: Низкий
ubuntu логотип

CVE-2024-45341

больше 1 года назад

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2024-45341

больше 1 года назад

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 4.2
EPSS: Низкий
nvd логотип

CVE-2024-45341

больше 1 года назад

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 6.1
EPSS: Низкий
msrc логотип

CVE-2024-45341

8 месяцев назад

Usage of IPv6 zone IDs can bypass URI name constraints in crypto/x509

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2024-45341

больше 1 года назад

A certificate with a URI which has a IPv6 address with a zone ID may i ...

CVSS3: 6.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0393-1

больше 1 года назад

Security update for go1.23

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0392-1

больше 1 года назад

Security update for go1.22

EPSS: Низкий
github логотип

GHSA-3whm-j4xm-rv8x

больше 1 года назад

Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols.

CVSS3: 8.4
EPSS: Низкий
fstec логотип

BDU:2025-03456

больше 1 года назад

Уязвимость компонента crypto-elliptic языка программирования Golang, позволяющая нарушителю получить доступ к конфиденциальной информации

CVSS3: 4
EPSS: Низкий
github логотип

GHSA-3f6r-qh9c-x6mm

больше 1 года назад

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 6.1
EPSS: Низкий
fstec логотип

BDU:2025-03335

больше 1 года назад

Уязвимость языка программирования Golang, связанная с неправильной проверкой входных данных, позволяющая нарушителю обойти внедренные ограничения безопасности

CVSS3: 6.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0431-1

больше 1 года назад

Security update for go1.24

EPSS: Низкий
redos логотип

ROS-20250226-17

больше 1 года назад

Уязвимость golang

CVSS2: 2.1
EPSS: Низкий
redos логотип

ROS-20250806-13

12 месяцев назад

Множественные уязвимости portainer-ce

CVSS3: 9.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2025-7592

ELSA-2025-7592: yggdrasil security update (IMPORTANT)

около 1 года назад
ubuntu логотип
CVE-2025-22866

Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols.

CVSS3: 4
0%
Низкий
больше 1 года назад
redhat логотип
CVE-2025-22866

Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols.

CVSS3: 5.3
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2025-22866

Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols.

CVSS3: 4
0%
Низкий
больше 1 года назад
msrc логотип
CVE-2025-22866

Timing sidechannel for P-256 on ppc64le in crypto/internal/nistec

CVSS3: 8.4
0%
Низкий
11 месяцев назад
debian логотип
CVE-2025-22866

Due to the usage of a variable time instruction in the assembly implem ...

CVSS3: 4
0%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2024-45341

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 6.1
0%
Низкий
больше 1 года назад
redhat логотип
CVE-2024-45341

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 4.2
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-45341

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 6.1
0%
Низкий
больше 1 года назад
msrc логотип
CVE-2024-45341

Usage of IPv6 zone IDs can bypass URI name constraints in crypto/x509

CVSS3: 6.1
0%
Низкий
8 месяцев назад
debian логотип
CVE-2024-45341

A certificate with a URI which has a IPv6 address with a zone ID may i ...

CVSS3: 6.1
0%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0393-1

Security update for go1.23

0%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0392-1

Security update for go1.22

0%
Низкий
больше 1 года назад
github логотип
GHSA-3whm-j4xm-rv8x

Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols.

CVSS3: 8.4
0%
Низкий
больше 1 года назад
fstec логотип
BDU:2025-03456

Уязвимость компонента crypto-elliptic языка программирования Golang, позволяющая нарушителю получить доступ к конфиденциальной информации

CVSS3: 4
0%
Низкий
больше 1 года назад
github логотип
GHSA-3f6r-qh9c-x6mm

A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted in the web PKI, so this only affects users of private PKIs which make use of URIs.

CVSS3: 6.1
0%
Низкий
больше 1 года назад
fstec логотип
BDU:2025-03335

Уязвимость языка программирования Golang, связанная с неправильной проверкой входных данных, позволяющая нарушителю обойти внедренные ограничения безопасности

CVSS3: 6.1
0%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0431-1

Security update for go1.24

больше 1 года назад
redos логотип
ROS-20250226-17

Уязвимость golang

CVSS2: 2.1
0%
Низкий
больше 1 года назад
redos логотип
ROS-20250806-13

Множественные уязвимости portainer-ce

CVSS3: 9.1
12 месяцев назад

Уязвимостей на страницу