Количество 26
Количество 26
BDU:2024-03152
Уязвимость пакета crypto/tls языка программирования Golang, позволяющая нарушителю вызвать отказ в обслуживании
ALT-PU-2023-1269
ALT-PU-2023-1269: package `golang` update to version 1.19.6-alt1
ALT-PU-2023-1323
ALT-PU-2023-1323: package `golang` update to version 1.19.6-alt1
CVE-2022-41724
Large handshake records may cause panics in crypto/tls. Both clients and servers may send large TLS handshake records which cause servers and clients, respectively, to panic when attempting to construct responses. This affects all TLS 1.3 clients, TLS 1.2 clients which explicitly enable session resumption (by setting Config.ClientSessionCache to a non-nil value), and TLS 1.3 servers which request client certificates (by setting Config.ClientAuth >= RequestClientCert).
CVE-2022-41724
Large handshake records may cause panics in crypto/tls. Both clients and servers may send large TLS handshake records which cause servers and clients, respectively, to panic when attempting to construct responses. This affects all TLS 1.3 clients, TLS 1.2 clients which explicitly enable session resumption (by setting Config.ClientSessionCache to a non-nil value), and TLS 1.3 servers which request client certificates (by setting Config.ClientAuth >= RequestClientCert).
CVE-2022-41724
Large handshake records may cause panics in crypto/tls. Both clients and servers may send large TLS handshake records which cause servers and clients, respectively, to panic when attempting to construct responses. This affects all TLS 1.3 clients, TLS 1.2 clients which explicitly enable session resumption (by setting Config.ClientSessionCache to a non-nil value), and TLS 1.3 servers which request client certificates (by setting Config.ClientAuth >= RequestClientCert).
CVE-2022-41724
Panic on large handshake records in crypto/tls
CVE-2022-41724
Large handshake records may cause panics in crypto/tls. Both clients a ...
ROS-20240418-06
Множественные уязвимости buildah
GHSA-89mw-w342-mqrr
Large handshake records may cause panics in crypto/tls. Both clients and servers may send large TLS handshake records which cause servers and clients, respectively, to panic when attempting to construct responses. This affects all TLS 1.3 clients, TLS 1.2 clients which explicitly enable session resumption (by setting Config.ClientSessionCache to a non-nil value), and TLS 1.3 servers which request client certificates (by setting Config.ClientAuth >= RequestClientCert).
RLSA-2023:3083
Moderate: go-toolset:Rocky Linux8 security and bug fix update
ELSA-2023-3083
ELSA-2023-3083: go-toolset:ol8 security and bug fix update (MODERATE)
SUSE-SU-2023:0869-1
Security update for go1.18
SUSE-SU-2023:0871-1
Security update for container-suseconnect
SUSE-SU-2023:0735-1
Security update for go1.20
SUSE-SU-2023:0733-1
Security update for go1.19
ELSA-2023-6380
ELSA-2023-6380: runc security update (MODERATE)
ELSA-2023-6402
ELSA-2023-6402: containernetworking-plugins security and bug fix update (MODERATE)
ELSA-2023-6473
ELSA-2023-6473: buildah security update (MODERATE)
ELSA-2023-6363
ELSA-2023-6363: skopeo security update (MODERATE)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2024-03152 Уязвимость пакета crypto/tls языка программирования Golang, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 1% Низкий | больше 3 лет назад | |
ALT-PU-2023-1269 ALT-PU-2023-1269: package `golang` update to version 1.19.6-alt1 | CVSS3: 7.5 | больше 3 лет назад | ||
ALT-PU-2023-1323 ALT-PU-2023-1323: package `golang` update to version 1.19.6-alt1 | CVSS3: 7.5 | больше 3 лет назад | ||
CVE-2022-41724 Large handshake records may cause panics in crypto/tls. Both clients and servers may send large TLS handshake records which cause servers and clients, respectively, to panic when attempting to construct responses. This affects all TLS 1.3 clients, TLS 1.2 clients which explicitly enable session resumption (by setting Config.ClientSessionCache to a non-nil value), and TLS 1.3 servers which request client certificates (by setting Config.ClientAuth >= RequestClientCert). | CVSS3: 7.5 | 1% Низкий | больше 3 лет назад | |
CVE-2022-41724 Large handshake records may cause panics in crypto/tls. Both clients and servers may send large TLS handshake records which cause servers and clients, respectively, to panic when attempting to construct responses. This affects all TLS 1.3 clients, TLS 1.2 clients which explicitly enable session resumption (by setting Config.ClientSessionCache to a non-nil value), and TLS 1.3 servers which request client certificates (by setting Config.ClientAuth >= RequestClientCert). | CVSS3: 7.5 | 1% Низкий | больше 3 лет назад | |
CVE-2022-41724 Large handshake records may cause panics in crypto/tls. Both clients and servers may send large TLS handshake records which cause servers and clients, respectively, to panic when attempting to construct responses. This affects all TLS 1.3 clients, TLS 1.2 clients which explicitly enable session resumption (by setting Config.ClientSessionCache to a non-nil value), and TLS 1.3 servers which request client certificates (by setting Config.ClientAuth >= RequestClientCert). | CVSS3: 7.5 | 1% Низкий | больше 3 лет назад | |
CVE-2022-41724 Panic on large handshake records in crypto/tls | CVSS3: 7.5 | 1% Низкий | около 1 года назад | |
CVE-2022-41724 Large handshake records may cause panics in crypto/tls. Both clients a ... | CVSS3: 7.5 | 1% Низкий | больше 3 лет назад | |
ROS-20240418-06 Множественные уязвимости buildah | CVSS3: 9.8 | больше 2 лет назад | ||
GHSA-89mw-w342-mqrr Large handshake records may cause panics in crypto/tls. Both clients and servers may send large TLS handshake records which cause servers and clients, respectively, to panic when attempting to construct responses. This affects all TLS 1.3 clients, TLS 1.2 clients which explicitly enable session resumption (by setting Config.ClientSessionCache to a non-nil value), and TLS 1.3 servers which request client certificates (by setting Config.ClientAuth >= RequestClientCert). | CVSS3: 7.5 | 1% Низкий | больше 3 лет назад | |
RLSA-2023:3083 Moderate: go-toolset:Rocky Linux8 security and bug fix update | больше 3 лет назад | |||
ELSA-2023-3083 ELSA-2023-3083: go-toolset:ol8 security and bug fix update (MODERATE) | больше 3 лет назад | |||
SUSE-SU-2023:0869-1 Security update for go1.18 | больше 3 лет назад | |||
SUSE-SU-2023:0871-1 Security update for container-suseconnect | больше 3 лет назад | |||
SUSE-SU-2023:0735-1 Security update for go1.20 | больше 3 лет назад | |||
SUSE-SU-2023:0733-1 Security update for go1.19 | больше 3 лет назад | |||
ELSA-2023-6380 ELSA-2023-6380: runc security update (MODERATE) | почти 3 года назад | |||
ELSA-2023-6402 ELSA-2023-6402: containernetworking-plugins security and bug fix update (MODERATE) | почти 3 года назад | |||
ELSA-2023-6473 ELSA-2023-6473: buildah security update (MODERATE) | почти 3 года назад | |||
ELSA-2023-6363 ELSA-2023-6363: skopeo security update (MODERATE) | почти 3 года назад |
Уязвимостей на страницу