Логотип exploitDog
bind:"BDU:2024-03154" OR bind:"CVE-2023-24534"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2024-03154" OR bind:"CVE-2023-24534"

Количество 22

Количество 22

fstec логотип

BDU:2024-03154

почти 3 года назад

Уязвимость пакета net/textproto языка программирования Golang, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2023-24534

почти 3 года назад

HTTP and MIME header parsing can allocate large amounts of memory, even when parsing small inputs, potentially leading to a denial of service. Certain unusual patterns of input data can cause the common function used to parse HTTP and MIME headers to allocate substantially more memory than required to hold the parsed headers. An attacker can exploit this behavior to cause an HTTP server to allocate large amounts of memory from a small request, potentially leading to memory exhaustion and a denial of service. With fix, header parsing now correctly allocates only the memory required to hold parsed headers.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2023-24534

почти 3 года назад

HTTP and MIME header parsing can allocate large amounts of memory, even when parsing small inputs, potentially leading to a denial of service. Certain unusual patterns of input data can cause the common function used to parse HTTP and MIME headers to allocate substantially more memory than required to hold the parsed headers. An attacker can exploit this behavior to cause an HTTP server to allocate large amounts of memory from a small request, potentially leading to memory exhaustion and a denial of service. With fix, header parsing now correctly allocates only the memory required to hold parsed headers.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2023-24534

почти 3 года назад

HTTP and MIME header parsing can allocate large amounts of memory, even when parsing small inputs, potentially leading to a denial of service. Certain unusual patterns of input data can cause the common function used to parse HTTP and MIME headers to allocate substantially more memory than required to hold the parsed headers. An attacker can exploit this behavior to cause an HTTP server to allocate large amounts of memory from a small request, potentially leading to memory exhaustion and a denial of service. With fix, header parsing now correctly allocates only the memory required to hold parsed headers.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2023-24534

5 месяцев назад

Excessive memory allocation in net/http and net/textproto

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2023-24534

почти 3 года назад

HTTP and MIME header parsing can allocate large amounts of memory, eve ...

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20240418-06

почти 2 года назад

Множественные уязвимости buildah

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-8v5j-pwr7-w5f8

почти 3 года назад

HTTP and MIME header parsing can allocate large amounts of memory, even when parsing small inputs, potentially leading to a denial of service. Certain unusual patterns of input data can cause the common function used to parse HTTP and MIME headers to allocate substantially more memory than required to hold the parsed headers. An attacker can exploit this behavior to cause an HTTP server to allocate large amounts of memory from a small request, potentially leading to memory exhaustion and a denial of service. With fix, header parsing now correctly allocates only the memory required to hold parsed headers.

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:1792-1

почти 3 года назад

Security update for go1.19

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:1791-1

почти 3 года назад

Security update for go1.20

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2127-1

больше 2 лет назад

Security update for go1.19

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2105-2

больше 2 лет назад

Security update for go1.20

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2105-1

больше 2 лет назад

Security update for go1.20

EPSS: Низкий
oracle-oval логотип

ELSA-2023-6420

около 2 лет назад

ELSA-2023-6420: grafana security and enhancement update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2023-6402

около 2 лет назад

ELSA-2023-6402: containernetworking-plugins security and bug fix update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2023-6473

около 2 лет назад

ELSA-2023-6473: buildah security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2023-6363

около 2 лет назад

ELSA-2023-6363: skopeo security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2023-6474

около 2 лет назад

ELSA-2023-6474: podman security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
rocky логотип

RLSA-2023:6938

2 месяца назад

Moderate: container-tools:4.0 security and bug fix update

EPSS: Низкий
oracle-oval логотип

ELSA-2023-6938

около 2 лет назад

ELSA-2023-6938: container-tools:4.0 security and bug fix update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2024-03154

Уязвимость пакета net/textproto языка программирования Golang, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
0%
Низкий
почти 3 года назад
ubuntu логотип
CVE-2023-24534

HTTP and MIME header parsing can allocate large amounts of memory, even when parsing small inputs, potentially leading to a denial of service. Certain unusual patterns of input data can cause the common function used to parse HTTP and MIME headers to allocate substantially more memory than required to hold the parsed headers. An attacker can exploit this behavior to cause an HTTP server to allocate large amounts of memory from a small request, potentially leading to memory exhaustion and a denial of service. With fix, header parsing now correctly allocates only the memory required to hold parsed headers.

CVSS3: 7.5
0%
Низкий
почти 3 года назад
redhat логотип
CVE-2023-24534

HTTP and MIME header parsing can allocate large amounts of memory, even when parsing small inputs, potentially leading to a denial of service. Certain unusual patterns of input data can cause the common function used to parse HTTP and MIME headers to allocate substantially more memory than required to hold the parsed headers. An attacker can exploit this behavior to cause an HTTP server to allocate large amounts of memory from a small request, potentially leading to memory exhaustion and a denial of service. With fix, header parsing now correctly allocates only the memory required to hold parsed headers.

CVSS3: 7.5
0%
Низкий
почти 3 года назад
nvd логотип
CVE-2023-24534

HTTP and MIME header parsing can allocate large amounts of memory, even when parsing small inputs, potentially leading to a denial of service. Certain unusual patterns of input data can cause the common function used to parse HTTP and MIME headers to allocate substantially more memory than required to hold the parsed headers. An attacker can exploit this behavior to cause an HTTP server to allocate large amounts of memory from a small request, potentially leading to memory exhaustion and a denial of service. With fix, header parsing now correctly allocates only the memory required to hold parsed headers.

CVSS3: 7.5
0%
Низкий
почти 3 года назад
msrc логотип
CVE-2023-24534

Excessive memory allocation in net/http and net/textproto

CVSS3: 7.5
0%
Низкий
5 месяцев назад
debian логотип
CVE-2023-24534

HTTP and MIME header parsing can allocate large amounts of memory, eve ...

CVSS3: 7.5
0%
Низкий
почти 3 года назад
redos логотип
ROS-20240418-06

Множественные уязвимости buildah

CVSS3: 9.8
почти 2 года назад
github логотип
GHSA-8v5j-pwr7-w5f8

HTTP and MIME header parsing can allocate large amounts of memory, even when parsing small inputs, potentially leading to a denial of service. Certain unusual patterns of input data can cause the common function used to parse HTTP and MIME headers to allocate substantially more memory than required to hold the parsed headers. An attacker can exploit this behavior to cause an HTTP server to allocate large amounts of memory from a small request, potentially leading to memory exhaustion and a denial of service. With fix, header parsing now correctly allocates only the memory required to hold parsed headers.

CVSS3: 7.5
0%
Низкий
почти 3 года назад
suse-cvrf логотип
SUSE-SU-2023:1792-1

Security update for go1.19

почти 3 года назад
suse-cvrf логотип
SUSE-SU-2023:1791-1

Security update for go1.20

почти 3 года назад
suse-cvrf логотип
SUSE-SU-2023:2127-1

Security update for go1.19

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:2105-2

Security update for go1.20

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:2105-1

Security update for go1.20

больше 2 лет назад
oracle-oval логотип
ELSA-2023-6420

ELSA-2023-6420: grafana security and enhancement update (MODERATE)

около 2 лет назад
oracle-oval логотип
ELSA-2023-6402

ELSA-2023-6402: containernetworking-plugins security and bug fix update (MODERATE)

около 2 лет назад
oracle-oval логотип
ELSA-2023-6473

ELSA-2023-6473: buildah security update (MODERATE)

около 2 лет назад
oracle-oval логотип
ELSA-2023-6363

ELSA-2023-6363: skopeo security update (MODERATE)

около 2 лет назад
oracle-oval логотип
ELSA-2023-6474

ELSA-2023-6474: podman security, bug fix, and enhancement update (MODERATE)

около 2 лет назад
rocky логотип
RLSA-2023:6938

Moderate: container-tools:4.0 security and bug fix update

2 месяца назад
oracle-oval логотип
ELSA-2023-6938

ELSA-2023-6938: container-tools:4.0 security and bug fix update (MODERATE)

около 2 лет назад

Уязвимостей на страницу