Количество 63
Количество 63
BDU:2025-14528
Уязвимость компонента tar.Reader языка программирования Go, позволяющая нарушителю вызвать отказ в обслуживании
ROS-20260710-80-0019
Уязвимость mimir
ROS-20260710-73-0019
Уязвимость mimir
ROS-20260209-80-0037
Уязвимость opentofu
ROS-20260209-73-0030
Уязвимость opentofu
ALT-PU-2026-1931
ALT-PU-2026-1931: package `cri-o1.32` update to version 1.32.11-alt1
ROS-20251029-07
Множественные уязвимости golang
ALT-PU-2025-13232
ALT-PU-2025-13232: package `golang` update to version 1.24.9-alt1
ALT-PU-2025-12749
ALT-PU-2025-12749: package `golang` update to version 1.24.8-alt1
CVE-2025-58183
tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations.
CVE-2025-58183
tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations.
CVE-2025-58183
tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations.
CVE-2025-58183
Unbounded allocation when parsing GNU sparse map in archive/tar
CVE-2025-58183
tar.Reader does not set a maximum size on the number of sparse region ...
ALT-PU-2025-14968
ALT-PU-2025-14968: package `golang` update to version 1.25.4-alt1
RLSA-2026:1838
Moderate: image-builder security update
RLSA-2026:1837
Moderate: osbuild-composer security update
RLSA-2026:1381
Moderate: osbuild-composer security update
RLSA-2026:1380
Moderate: osbuild-composer security update
RLSA-2026:1377
Moderate: image-builder security update
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2025-14528 Уязвимость компонента tar.Reader языка программирования Go, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 4.3 | 0% Низкий | 11 месяцев назад | |
ROS-20260710-80-0019 Уязвимость mimir | CVSS3: 4.3 | 0% Низкий | 3 месяца назад | |
ROS-20260710-73-0019 Уязвимость mimir | CVSS3: 4.3 | 0% Низкий | 3 месяца назад | |
ROS-20260209-80-0037 Уязвимость opentofu | CVSS3: 4.3 | 0% Низкий | 8 месяцев назад | |
ROS-20260209-73-0030 Уязвимость opentofu | CVSS3: 4.3 | 0% Низкий | 8 месяцев назад | |
ALT-PU-2026-1931 ALT-PU-2026-1931: package `cri-o1.32` update to version 1.32.11-alt1 | CVSS3: 4.3 | 0% Низкий | 8 месяцев назад | |
ROS-20251029-07 Множественные уязвимости golang | CVSS3: 8.2 | 11 месяцев назад | ||
ALT-PU-2025-13232 ALT-PU-2025-13232: package `golang` update to version 1.24.9-alt1 | CVSS3: 7.5 | 11 месяцев назад | ||
ALT-PU-2025-12749 ALT-PU-2025-12749: package `golang` update to version 1.24.8-alt1 | CVSS3: 7.5 | 12 месяцев назад | ||
CVE-2025-58183 tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations. | CVSS3: 4.3 | 0% Низкий | 11 месяцев назад | |
CVE-2025-58183 tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations. | CVSS3: 7.5 | 0% Низкий | 11 месяцев назад | |
CVE-2025-58183 tar.Reader does not set a maximum size on the number of sparse region data blocks in GNU tar pax 1.0 sparse files. A maliciously-crafted archive containing a large number of sparse regions can cause a Reader to read an unbounded amount of data from the archive into memory. When reading from a compressed source, a small compressed input can result in large allocations. | CVSS3: 4.3 | 0% Низкий | 11 месяцев назад | |
CVE-2025-58183 Unbounded allocation when parsing GNU sparse map in archive/tar | CVSS3: 5.5 | 0% Низкий | 11 месяцев назад | |
CVE-2025-58183 tar.Reader does not set a maximum size on the number of sparse region ... | CVSS3: 4.3 | 0% Низкий | 11 месяцев назад | |
ALT-PU-2025-14968 ALT-PU-2025-14968: package `golang` update to version 1.25.4-alt1 | CVSS3: 7.5 | 10 месяцев назад | ||
RLSA-2026:1838 Moderate: image-builder security update | 0% Низкий | 4 месяца назад | ||
RLSA-2026:1837 Moderate: osbuild-composer security update | 0% Низкий | 4 месяца назад | ||
RLSA-2026:1381 Moderate: osbuild-composer security update | 0% Низкий | 4 месяца назад | ||
RLSA-2026:1380 Moderate: osbuild-composer security update | 0% Низкий | 4 месяца назад | ||
RLSA-2026:1377 Moderate: image-builder security update | 0% Низкий | 4 месяца назад |
Уязвимостей на страницу