Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 233

Количество 233

nvd логотип

CVE-2026-32283

6 месяцев назад

If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection can deadlock, causing uncontrolled consumption of resources. This can lead to a denial of service. This only affects TLS 1.3.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2026-32283

6 месяцев назад

Unauthenticated TLS 1.3 KeyUpdate record can cause persistent connection retention and DoS in crypto/tls

EPSS: Низкий
debian логотип

CVE-2026-32283

6 месяцев назад

If one side of the TLS connection sends multiple key update messages p ...

CVSS3: 7.5
EPSS: Низкий
altlinux логотип

ALT-PU-2026-5657

6 месяцев назад

ALT-PU-2026-5657: package `mimir` update to version 3.0.5-alt1

CVSS3: 9.1
EPSS: Низкий
redos логотип

ROS-20260430-80-0011

5 месяцев назад

Уязвимость golang

CVSS3: 6.4
EPSS: Низкий
rocky логотип

RLSA-2026:25999

3 месяца назад

Moderate: yggdrasil-worker-package-manager security update

EPSS: Низкий
github логотип

GHSA-xj38-jxc5-rppx

6 месяцев назад

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 6.4
EPSS: Низкий
oracle-oval логотип

ELSA-2026-25999

2 месяца назад

ELSA-2026-25999: yggdrasil-worker-package-manager security update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2026-07252

6 месяцев назад

Уязвимость языка программирования Go, связанная с неверным определением ссылки перед доступом к файлу, позволяющая нарушителю повысить свои привилегии

CVSS3: 6.4
EPSS: Низкий
redos логотип

ROS-20260430-80-0014

5 месяцев назад

Уязвимость golang

CVSS3: 7.5
EPSS: Низкий
rocky логотип

RLSA-2026:19139

4 месяца назад

Important: go-fdo-client security update

EPSS: Низкий
rocky логотип

RLSA-2026:11881

5 месяцев назад

Important: grafana-pcp security update

EPSS: Низкий
github логотип

GHSA-jrg3-gfjw-hm96

6 месяцев назад

If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection can deadlock, causing uncontrolled consumption of resources. This can lead to a denial of service. This only affects TLS 1.3.

CVSS3: 7.5
EPSS: Низкий
oracle-oval логотип

ELSA-2026-19139

2 месяца назад

ELSA-2026-19139: go-fdo-client security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-16101

3 месяца назад

ELSA-2026-16101: host-metering security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-11881

5 месяцев назад

ELSA-2026-11881: grafana-pcp security update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2026-07246

6 месяцев назад

Уязвимость языка программирования Go, связанная с неограниченным распределением ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20260729-80-0025

2 месяца назад

Уязвимость coredns

CVSS3: 6.4
EPSS: Низкий
redos логотип

ROS-20260729-73-0017

2 месяца назад

Уязвимость coredns

CVSS3: 6.4
EPSS: Низкий
redos логотип

ROS-20260710-80-0031

3 месяца назад

Уязвимость mimir

CVSS3: 6.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-32283

If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection can deadlock, causing uncontrolled consumption of resources. This can lead to a denial of service. This only affects TLS 1.3.

CVSS3: 7.5
1%
Низкий
6 месяцев назад
msrc логотип
CVE-2026-32283

Unauthenticated TLS 1.3 KeyUpdate record can cause persistent connection retention and DoS in crypto/tls

1%
Низкий
6 месяцев назад
debian логотип
CVE-2026-32283

If one side of the TLS connection sends multiple key update messages p ...

CVSS3: 7.5
1%
Низкий
6 месяцев назад
altlinux логотип
ALT-PU-2026-5657

ALT-PU-2026-5657: package `mimir` update to version 3.0.5-alt1

CVSS3: 9.1
6 месяцев назад
redos логотип
ROS-20260430-80-0011

Уязвимость golang

CVSS3: 6.4
0%
Низкий
5 месяцев назад
rocky логотип
RLSA-2026:25999

Moderate: yggdrasil-worker-package-manager security update

0%
Низкий
3 месяца назад
github логотип
GHSA-xj38-jxc5-rppx

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 6.4
0%
Низкий
6 месяцев назад
oracle-oval логотип
ELSA-2026-25999

ELSA-2026-25999: yggdrasil-worker-package-manager security update (MODERATE)

0%
Низкий
2 месяца назад
fstec логотип
BDU:2026-07252

Уязвимость языка программирования Go, связанная с неверным определением ссылки перед доступом к файлу, позволяющая нарушителю повысить свои привилегии

CVSS3: 6.4
0%
Низкий
6 месяцев назад
redos логотип
ROS-20260430-80-0014

Уязвимость golang

CVSS3: 7.5
1%
Низкий
5 месяцев назад
rocky логотип
RLSA-2026:19139

Important: go-fdo-client security update

1%
Низкий
4 месяца назад
rocky логотип
RLSA-2026:11881

Important: grafana-pcp security update

1%
Низкий
5 месяцев назад
github логотип
GHSA-jrg3-gfjw-hm96

If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection can deadlock, causing uncontrolled consumption of resources. This can lead to a denial of service. This only affects TLS 1.3.

CVSS3: 7.5
1%
Низкий
6 месяцев назад
oracle-oval логотип
ELSA-2026-19139

ELSA-2026-19139: go-fdo-client security update (IMPORTANT)

1%
Низкий
2 месяца назад
oracle-oval логотип
ELSA-2026-16101

ELSA-2026-16101: host-metering security update (IMPORTANT)

1%
Низкий
3 месяца назад
oracle-oval логотип
ELSA-2026-11881

ELSA-2026-11881: grafana-pcp security update (IMPORTANT)

1%
Низкий
5 месяцев назад
fstec логотип
BDU:2026-07246

Уязвимость языка программирования Go, связанная с неограниченным распределением ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
1%
Низкий
6 месяцев назад
redos логотип
ROS-20260729-80-0025

Уязвимость coredns

CVSS3: 6.4
0%
Низкий
2 месяца назад
redos логотип
ROS-20260729-73-0017

Уязвимость coredns

CVSS3: 6.4
0%
Низкий
2 месяца назад
redos логотип
ROS-20260710-80-0031

Уязвимость mimir

CVSS3: 6.4
0%
Низкий
3 месяца назад

Уязвимостей на страницу