Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 132

Количество 132

nvd логотип

CVE-2026-32281

6 месяцев назад

Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2026-32281

6 месяцев назад

Inefficient policy validation in crypto/x509

EPSS: Низкий
debian логотип

CVE-2026-32281

6 месяцев назад

Validating certificate chains which use policies is unexpectedly ineff ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2026-32282

6 месяцев назад

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 6.4
EPSS: Низкий
redhat логотип

CVE-2026-32282

6 месяцев назад

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2026-32282

6 месяцев назад

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 6.4
EPSS: Низкий
msrc логотип

CVE-2026-32282

6 месяцев назад

TOCTOU permits root escape on Linux via Root.Chmod in os in internal/syscall/unix

EPSS: Низкий
debian логотип

CVE-2026-32282

6 месяцев назад

On Linux, if the target of Root.Chmod is replaced with a symlink while ...

CVSS3: 6.4
EPSS: Низкий
redos логотип

ROS-20260430-80-0008

5 месяцев назад

Уязвимость golang

CVSS3: 7.5
EPSS: Низкий
rocky логотип

RLSA-2026:27740

3 месяца назад

Moderate: golang-github-openprinting-ipp-usb security update

EPSS: Низкий
github логотип

GHSA-gjvh-7jh8-7xhm

6 месяцев назад

Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.

CVSS3: 7.5
EPSS: Низкий
oracle-oval логотип

ELSA-2026-27740

2 месяца назад

ELSA-2026-27740: golang-github-openprinting-ipp-usb security update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2026-07251

6 месяцев назад

Уязвимость языка программирования Go, связанная с ошибками процедуры подтверждения подлинности сертификата, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20260430-80-0011

5 месяцев назад

Уязвимость golang

CVSS3: 6.4
EPSS: Низкий
rocky логотип

RLSA-2026:25999

3 месяца назад

Moderate: yggdrasil-worker-package-manager security update

EPSS: Низкий
github логотип

GHSA-xj38-jxc5-rppx

6 месяцев назад

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 6.4
EPSS: Низкий
oracle-oval логотип

ELSA-2026-25999

2 месяца назад

ELSA-2026-25999: yggdrasil-worker-package-manager security update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2026-07252

6 месяцев назад

Уязвимость языка программирования Go, связанная с неверным определением ссылки перед доступом к файлу, позволяющая нарушителю повысить свои привилегии

CVSS3: 6.4
EPSS: Низкий
redos логотип

ROS-20260710-80-0006

3 месяца назад

Уязвимость mimir

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20260710-73-0006

3 месяца назад

Уязвимость mimir

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-32281

Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.

CVSS3: 7.5
0%
Низкий
6 месяцев назад
msrc логотип
CVE-2026-32281

Inefficient policy validation in crypto/x509

0%
Низкий
6 месяцев назад
debian логотип
CVE-2026-32281

Validating certificate chains which use policies is unexpectedly ineff ...

CVSS3: 7.5
0%
Низкий
6 месяцев назад
ubuntu логотип
CVE-2026-32282

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 6.4
0%
Низкий
6 месяцев назад
redhat логотип
CVE-2026-32282

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 7.8
0%
Низкий
6 месяцев назад
nvd логотип
CVE-2026-32282

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 6.4
0%
Низкий
6 месяцев назад
msrc логотип
CVE-2026-32282

TOCTOU permits root escape on Linux via Root.Chmod in os in internal/syscall/unix

0%
Низкий
6 месяцев назад
debian логотип
CVE-2026-32282

On Linux, if the target of Root.Chmod is replaced with a symlink while ...

CVSS3: 6.4
0%
Низкий
6 месяцев назад
redos логотип
ROS-20260430-80-0008

Уязвимость golang

CVSS3: 7.5
0%
Низкий
5 месяцев назад
rocky логотип
RLSA-2026:27740

Moderate: golang-github-openprinting-ipp-usb security update

0%
Низкий
3 месяца назад
github логотип
GHSA-gjvh-7jh8-7xhm

Validating certificate chains which use policies is unexpectedly inefficient when certificates in the chain contain a very large number of policy mappings, possibly causing denial of service. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.

CVSS3: 7.5
0%
Низкий
6 месяцев назад
oracle-oval логотип
ELSA-2026-27740

ELSA-2026-27740: golang-github-openprinting-ipp-usb security update (MODERATE)

0%
Низкий
2 месяца назад
fstec логотип
BDU:2026-07251

Уязвимость языка программирования Go, связанная с ошибками процедуры подтверждения подлинности сертификата, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
0%
Низкий
6 месяцев назад
redos логотип
ROS-20260430-80-0011

Уязвимость golang

CVSS3: 6.4
0%
Низкий
5 месяцев назад
rocky логотип
RLSA-2026:25999

Moderate: yggdrasil-worker-package-manager security update

0%
Низкий
3 месяца назад
github логотип
GHSA-xj38-jxc5-rppx

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 6.4
0%
Низкий
6 месяцев назад
oracle-oval логотип
ELSA-2026-25999

ELSA-2026-25999: yggdrasil-worker-package-manager security update (MODERATE)

0%
Низкий
2 месяца назад
fstec логотип
BDU:2026-07252

Уязвимость языка программирования Go, связанная с неверным определением ссылки перед доступом к файлу, позволяющая нарушителю повысить свои привилегии

CVSS3: 6.4
0%
Низкий
6 месяцев назад
redos логотип
ROS-20260710-80-0006

Уязвимость mimir

CVSS3: 7.5
0%
Низкий
3 месяца назад
redos логотип
ROS-20260710-73-0006

Уязвимость mimir

CVSS3: 7.5
0%
Низкий
3 месяца назад

Уязвимостей на страницу