Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 113

Количество 113

nvd логотип

CVE-2026-32280

4 месяца назад

During chain building, the amount of work that is done is not correctly limited when a large number of intermediate certificates are passed in VerifyOptions.Intermediates, which can lead to a denial of service. This affects both direct users of crypto/x509 and users of crypto/tls.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2026-32280

4 месяца назад

Unexpected work during chain building in crypto/x509

EPSS: Низкий
debian логотип

CVE-2026-32280

4 месяца назад

During chain building, the amount of work that is done is not correctl ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-m4pr-4j3g-9v7v

4 месяца назад

During chain building, the amount of work that is done is not correctly limited when a large number of intermediate certificates are passed in VerifyOptions.Intermediates, which can lead to a denial of service. This affects both direct users of crypto/x509 and users of crypto/tls.

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2026-07254

4 месяца назад

Уязвимость компонента crypto-x509 языка программирования Go, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20260710-73-0005

около 1 месяца назад

Уязвимость mimir

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20260507-73-0012

3 месяца назад

Уязвимость golang

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2026-32281

4 месяца назад

Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2026-32281

4 месяца назад

Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2026-32281

4 месяца назад

Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2026-32281

4 месяца назад

Inefficient policy validation in crypto/x509

EPSS: Низкий
debian логотип

CVE-2026-32281

4 месяца назад

Validating certificate chains which use policies is unexpectedly ineff ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2026-32282

4 месяца назад

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 6.4
EPSS: Низкий
redhat логотип

CVE-2026-32282

4 месяца назад

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2026-32282

4 месяца назад

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 6.4
EPSS: Низкий
msrc логотип

CVE-2026-32282

2 месяца назад

TOCTOU permits root escape on Linux via Root.Chmod in os in internal/syscall/unix

EPSS: Низкий
debian логотип

CVE-2026-32282

4 месяца назад

On Linux, if the target of Root.Chmod is replaced with a symlink while ...

CVSS3: 6.4
EPSS: Низкий
rocky логотип

RLSA-2026:27740

около 2 месяцев назад

Moderate: golang-github-openprinting-ipp-usb security update

EPSS: Низкий
github логотип

GHSA-gjvh-7jh8-7xhm

4 месяца назад

Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.

CVSS3: 7.5
EPSS: Низкий
oracle-oval логотип

ELSA-2026-27740

24 дня назад

ELSA-2026-27740: golang-github-openprinting-ipp-usb security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-32280

During chain building, the amount of work that is done is not correctly limited when a large number of intermediate certificates are passed in VerifyOptions.Intermediates, which can lead to a denial of service. This affects both direct users of crypto/x509 and users of crypto/tls.

CVSS3: 7.5
1%
Низкий
4 месяца назад
msrc логотип
CVE-2026-32280

Unexpected work during chain building in crypto/x509

1%
Низкий
4 месяца назад
debian логотип
CVE-2026-32280

During chain building, the amount of work that is done is not correctl ...

CVSS3: 7.5
1%
Низкий
4 месяца назад
github логотип
GHSA-m4pr-4j3g-9v7v

During chain building, the amount of work that is done is not correctly limited when a large number of intermediate certificates are passed in VerifyOptions.Intermediates, which can lead to a denial of service. This affects both direct users of crypto/x509 and users of crypto/tls.

CVSS3: 7.5
1%
Низкий
4 месяца назад
fstec логотип
BDU:2026-07254

Уязвимость компонента crypto-x509 языка программирования Go, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
1%
Низкий
4 месяца назад
redos логотип
ROS-20260710-73-0005

Уязвимость mimir

CVSS3: 7.5
1%
Низкий
около 1 месяца назад
redos логотип
ROS-20260507-73-0012

Уязвимость golang

CVSS3: 7.5
1%
Низкий
3 месяца назад
ubuntu логотип
CVE-2026-32281

Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.

CVSS3: 7.5
0%
Низкий
4 месяца назад
redhat логотип
CVE-2026-32281

Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.

CVSS3: 5.9
0%
Низкий
4 месяца назад
nvd логотип
CVE-2026-32281

Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.

CVSS3: 7.5
0%
Низкий
4 месяца назад
msrc логотип
CVE-2026-32281

Inefficient policy validation in crypto/x509

0%
Низкий
4 месяца назад
debian логотип
CVE-2026-32281

Validating certificate chains which use policies is unexpectedly ineff ...

CVSS3: 7.5
0%
Низкий
4 месяца назад
ubuntu логотип
CVE-2026-32282

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 6.4
0%
Низкий
4 месяца назад
redhat логотип
CVE-2026-32282

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 7.8
0%
Низкий
4 месяца назад
nvd логотип
CVE-2026-32282

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 6.4
0%
Низкий
4 месяца назад
msrc логотип
CVE-2026-32282

TOCTOU permits root escape on Linux via Root.Chmod in os in internal/syscall/unix

0%
Низкий
2 месяца назад
debian логотип
CVE-2026-32282

On Linux, if the target of Root.Chmod is replaced with a symlink while ...

CVSS3: 6.4
0%
Низкий
4 месяца назад
rocky логотип
RLSA-2026:27740

Moderate: golang-github-openprinting-ipp-usb security update

0%
Низкий
около 2 месяцев назад
github логотип
GHSA-gjvh-7jh8-7xhm

Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.

CVSS3: 7.5
0%
Низкий
4 месяца назад
oracle-oval логотип
ELSA-2026-27740

ELSA-2026-27740: golang-github-openprinting-ipp-usb security update (MODERATE)

0%
Низкий
24 дня назад

Уязвимостей на страницу