Количество 32
Количество 32
BDU:2021-01775
Уязвимость алгоритма сжатия данных Brotli, связанная с недостатком механизма проверки размера копируемых данных, позволяющая нарушителю нарушить целостность данных, а также вызвать отказ в обслуживании
ROS-20251125-10
Уязвимость brotli
ALT-PU-2020-2738
ALT-PU-2020-2738: package `libbrotli` update to version 1.0.9-alt1
ALT-PU-2022-1629
ALT-PU-2022-1629: package `powershell` update to version 7.2.2-alt1
ALT-PU-2022-1628
ALT-PU-2022-1628: package `dotnet-coreclr-3.1` update to version 3.1.23-alt1
ALT-PU-2022-1627
ALT-PU-2022-1627: package `dotnet-bootstrap-3.1` update to version 3.1.23-alt1
ALT-PU-2022-1620
ALT-PU-2022-1620: package `dotnet-runtime-5.0` update to version 5.0.15-alt1
ALT-PU-2022-1619
ALT-PU-2022-1619: package `dotnet-bootstrap-5.0` update to version 5.0.15-alt1
ALT-PU-2023-4713
ALT-PU-2023-4713: package `powershell` update to version 7.3.6-alt1
ALT-PU-2023-1465
ALT-PU-2023-1465: package `dotnet-runtime-5.0` update to version 5.0.17-alt1
ALT-PU-2023-1464
ALT-PU-2023-1464: package `dotnet-bootstrap-5.0` update to version 5.0.17-alt1
ALT-PU-2023-1308
ALT-PU-2023-1308: package `dotnet-coreclr-3.1` update to version 3.1.26-alt1
ALT-PU-2023-1307
ALT-PU-2023-1307: package `dotnet-bootstrap-3.1` update to version 3.1.26-alt1
CVE-2020-8927
A buffer overflow exists in the Brotli library versions prior to 1.0.8 where an attacker controlling the input length of a "one-shot" decompression request to a script can trigger a crash, which happens when copying over chunks of data larger than 2 GiB. It is recommended to update your Brotli library to 1.0.8 or later. If one cannot update, we recommend to use the "streaming" API as opposed to the "one-shot" API, and impose chunk size limits.
CVE-2020-8927
A buffer overflow exists in the Brotli library versions prior to 1.0.8 where an attacker controlling the input length of a "one-shot" decompression request to a script can trigger a crash, which happens when copying over chunks of data larger than 2 GiB. It is recommended to update your Brotli library to 1.0.8 or later. If one cannot update, we recommend to use the "streaming" API as opposed to the "one-shot" API, and impose chunk size limits.
CVE-2020-8927
A buffer overflow exists in the Brotli library versions prior to 1.0.8 where an attacker controlling the input length of a "one-shot" decompression request to a script can trigger a crash, which happens when copying over chunks of data larger than 2 GiB. It is recommended to update your Brotli library to 1.0.8 or later. If one cannot update, we recommend to use the "streaming" API as opposed to the "one-shot" API, and impose chunk size limits.
CVE-2020-8927
Brotli Library Buffer Overflow Vulnerability
CVE-2020-8927
A buffer overflow exists in the Brotli library versions prior to 1.0.8 ...
openSUSE-SU-2021:3942-1
Security update for brotli
openSUSE-SU-2020:1578-1
Security update for brotli
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2021-01775 Уязвимость алгоритма сжатия данных Brotli, связанная с недостатком механизма проверки размера копируемых данных, позволяющая нарушителю нарушить целостность данных, а также вызвать отказ в обслуживании | CVSS3: 6.5 | 3% Низкий | около 6 лет назад | |
ROS-20251125-10 Уязвимость brotli | CVSS3: 6.5 | 3% Низкий | 10 месяцев назад | |
ALT-PU-2020-2738 ALT-PU-2020-2738: package `libbrotli` update to version 1.0.9-alt1 | CVSS3: 6.5 | 3% Низкий | около 6 лет назад | |
ALT-PU-2022-1629 ALT-PU-2022-1629: package `powershell` update to version 7.2.2-alt1 | CVSS3: 6.5 | больше 4 лет назад | ||
ALT-PU-2022-1628 ALT-PU-2022-1628: package `dotnet-coreclr-3.1` update to version 3.1.23-alt1 | CVSS3: 7.5 | больше 4 лет назад | ||
ALT-PU-2022-1627 ALT-PU-2022-1627: package `dotnet-bootstrap-3.1` update to version 3.1.23-alt1 | CVSS3: 7.5 | больше 4 лет назад | ||
ALT-PU-2022-1620 ALT-PU-2022-1620: package `dotnet-runtime-5.0` update to version 5.0.15-alt1 | CVSS3: 7.5 | больше 4 лет назад | ||
ALT-PU-2022-1619 ALT-PU-2022-1619: package `dotnet-bootstrap-5.0` update to version 5.0.15-alt1 | CVSS3: 7.5 | больше 4 лет назад | ||
ALT-PU-2023-4713 ALT-PU-2023-4713: package `powershell` update to version 7.3.6-alt1 | CVSS3: 7.8 | около 3 лет назад | ||
ALT-PU-2023-1465 ALT-PU-2023-1465: package `dotnet-runtime-5.0` update to version 5.0.17-alt1 | CVSS3: 7.5 | больше 3 лет назад | ||
ALT-PU-2023-1464 ALT-PU-2023-1464: package `dotnet-bootstrap-5.0` update to version 5.0.17-alt1 | CVSS3: 7.5 | больше 3 лет назад | ||
ALT-PU-2023-1308 ALT-PU-2023-1308: package `dotnet-coreclr-3.1` update to version 3.1.26-alt1 | CVSS3: 7.5 | больше 3 лет назад | ||
ALT-PU-2023-1307 ALT-PU-2023-1307: package `dotnet-bootstrap-3.1` update to version 3.1.26-alt1 | CVSS3: 7.5 | больше 3 лет назад | ||
CVE-2020-8927 A buffer overflow exists in the Brotli library versions prior to 1.0.8 where an attacker controlling the input length of a "one-shot" decompression request to a script can trigger a crash, which happens when copying over chunks of data larger than 2 GiB. It is recommended to update your Brotli library to 1.0.8 or later. If one cannot update, we recommend to use the "streaming" API as opposed to the "one-shot" API, and impose chunk size limits. | CVSS3: 5.3 | 3% Низкий | около 6 лет назад | |
CVE-2020-8927 A buffer overflow exists in the Brotli library versions prior to 1.0.8 where an attacker controlling the input length of a "one-shot" decompression request to a script can trigger a crash, which happens when copying over chunks of data larger than 2 GiB. It is recommended to update your Brotli library to 1.0.8 or later. If one cannot update, we recommend to use the "streaming" API as opposed to the "one-shot" API, and impose chunk size limits. | CVSS3: 6.5 | 3% Низкий | около 6 лет назад | |
CVE-2020-8927 A buffer overflow exists in the Brotli library versions prior to 1.0.8 where an attacker controlling the input length of a "one-shot" decompression request to a script can trigger a crash, which happens when copying over chunks of data larger than 2 GiB. It is recommended to update your Brotli library to 1.0.8 or later. If one cannot update, we recommend to use the "streaming" API as opposed to the "one-shot" API, and impose chunk size limits. | CVSS3: 5.3 | 3% Низкий | около 6 лет назад | |
CVE-2020-8927 Brotli Library Buffer Overflow Vulnerability | CVSS3: 6.5 | 3% Низкий | больше 4 лет назад | |
CVE-2020-8927 A buffer overflow exists in the Brotli library versions prior to 1.0.8 ... | CVSS3: 5.3 | 3% Низкий | около 6 лет назад | |
openSUSE-SU-2021:3942-1 Security update for brotli | 3% Низкий | почти 5 лет назад | ||
openSUSE-SU-2020:1578-1 Security update for brotli | 3% Низкий | почти 6 лет назад |
Уязвимостей на страницу