Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 59

Количество 59

rocky логотип

RLSA-2026:37410

2 месяца назад

Important: buildah security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-37410

2 месяца назад

ELSA-2026-37410: buildah security update (IMPORTANT)

EPSS: Низкий
rocky логотип

RLSA-2026:36199

2 месяца назад

Important: buildah security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-36199

около 2 месяцев назад

ELSA-2026-36199: buildah security update (IMPORTANT)

EPSS: Низкий
rocky логотип

RLSA-2026:37123

2 месяца назад

Important: podman security, bug fix, and enhancement update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-37123

2 месяца назад

ELSA-2026-37123: podman security, bug fix, and enhancement update (IMPORTANT)

EPSS: Низкий
rocky логотип

RLSA-2026:37072

2 месяца назад

Important: podman security, bug fix, and enhancement update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-37072

около 2 месяцев назад

ELSA-2026-37072: podman security, bug fix, and enhancement update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20838-1

4 месяца назад

Security update for hauler

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20833-1

4 месяца назад

Security update for trivy

EPSS: Низкий
ubuntu логотип

CVE-2026-39835

4 месяца назад

SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2026-39835

4 месяца назад

SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-39835

4 месяца назад

SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil.

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2026-39835

4 месяца назад

Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2026-39835

4 месяца назад

SSH servers which use CertChecker as a public key callback without set ...

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21069-1

3 месяца назад

Security update for google-guest-agent

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20834-1

4 месяца назад

Security update for apptainer

EPSS: Низкий
ubuntu логотип

CVE-2026-39832

4 месяца назад

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 9.1
EPSS: Низкий
redhat логотип

CVE-2026-39832

4 месяца назад

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 8.7
EPSS: Низкий
nvd логотип

CVE-2026-39832

4 месяца назад

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 9.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2026:37410

Important: buildah security update

2 месяца назад
oracle-oval логотип
ELSA-2026-37410

ELSA-2026-37410: buildah security update (IMPORTANT)

2 месяца назад
rocky логотип
RLSA-2026:36199

Important: buildah security update

2 месяца назад
oracle-oval логотип
ELSA-2026-36199

ELSA-2026-36199: buildah security update (IMPORTANT)

около 2 месяцев назад
rocky логотип
RLSA-2026:37123

Important: podman security, bug fix, and enhancement update

2 месяца назад
oracle-oval логотип
ELSA-2026-37123

ELSA-2026-37123: podman security, bug fix, and enhancement update (IMPORTANT)

2 месяца назад
rocky логотип
RLSA-2026:37072

Important: podman security, bug fix, and enhancement update

2 месяца назад
oracle-oval логотип
ELSA-2026-37072

ELSA-2026-37072: podman security, bug fix, and enhancement update (IMPORTANT)

около 2 месяцев назад
suse-cvrf логотип
openSUSE-SU-2026:20838-1

Security update for hauler

4 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20833-1

Security update for trivy

4 месяца назад
ubuntu логотип
CVE-2026-39835

SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil.

CVSS3: 5.3
1%
Низкий
4 месяца назад
redhat логотип
CVE-2026-39835

SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil.

CVSS3: 7.5
1%
Низкий
4 месяца назад
nvd логотип
CVE-2026-39835

SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil.

CVSS3: 5.3
1%
Низкий
4 месяца назад
msrc логотип
CVE-2026-39835

Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh

CVSS3: 5.3
1%
Низкий
4 месяца назад
debian логотип
CVE-2026-39835

SSH servers which use CertChecker as a public key callback without set ...

CVSS3: 5.3
1%
Низкий
4 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:21069-1

Security update for google-guest-agent

3 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20834-1

Security update for apptainer

4 месяца назад
ubuntu логотип
CVE-2026-39832

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 9.1
1%
Низкий
4 месяца назад
redhat логотип
CVE-2026-39832

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 8.7
1%
Низкий
4 месяца назад
nvd логотип
CVE-2026-39832

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 9.1
1%
Низкий
4 месяца назад

Уязвимостей на страницу