Количество 13
Количество 13
CVE-2026-44740
Billy is an interface filesystem abstraction for Go. Prior to versions 5.9.0 and 6.0.0-alpha.1, multiple components may improperly handle crafted or malformed input, resulting in panics, infinite loops, uncontrolled recursion, or excessive resource consumption. These issues arise from insufficient validation and missing safety mechanisms such as cycle detection, recursion limits, or defensive handling of unexpected states when processing untrusted repository data and filesystem structures. This issue has been patched in versions 5.9.0 and 6.0.0-alpha.1.
CVE-2026-44740
Billy is an interface filesystem abstraction for Go. Prior to versions 5.9.0 and 6.0.0-alpha.1, multiple components may improperly handle crafted or malformed input, resulting in panics, infinite loops, uncontrolled recursion, or excessive resource consumption. These issues arise from insufficient validation and missing safety mechanisms such as cycle detection, recursion limits, or defensive handling of unexpected states when processing untrusted repository data and filesystem structures. This issue has been patched in versions 5.9.0 and 6.0.0-alpha.1.
CVE-2026-44740
Billy is an interface filesystem abstraction for Go. Prior to versions 5.9.0 and 6.0.0-alpha.1, multiple components may improperly handle crafted or malformed input, resulting in panics, infinite loops, uncontrolled recursion, or excessive resource consumption. These issues arise from insufficient validation and missing safety mechanisms such as cycle detection, recursion limits, or defensive handling of unexpected states when processing untrusted repository data and filesystem structures. This issue has been patched in versions 5.9.0 and 6.0.0-alpha.1.
CVE-2026-44740
Billy is an interface filesystem abstraction for Go. Prior to versions ...
GHSA-m3xc-h892-ggx6
go-billy: Lack of depth and cycle detection in symlink resolution may lead to infinite loops and resource exhaustion
openSUSE-SU-2026:21072-1
Security update for trivy
openSUSE-SU-2026:21079-1
Security update for amazon-ssm-agent
openSUSE-SU-2026:20956-1
Security update for trivy
SUSE-SU-2026:2468-1
Security update for amazon-ssm-agent
SUSE-SU-2026:2467-1
Security update for amazon-ssm-agent
openSUSE-SU-2026:21251-1
Security update for alloy
SUSE-SU-2026:2824-1
Security update for alloy
SUSE-SU-2026:3056-1
Security update for terraform-provider-aws, terraform-provider-azurerm, terraform-provider-external, terraform-provider-google, terraform-provider-helm, terraform-provider-kubernetes, terraform-provider-local, terraform-provider-null, terraform-provider-random, terraform-provider-tls
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-44740 Billy is an interface filesystem abstraction for Go. Prior to versions 5.9.0 and 6.0.0-alpha.1, multiple components may improperly handle crafted or malformed input, resulting in panics, infinite loops, uncontrolled recursion, or excessive resource consumption. These issues arise from insufficient validation and missing safety mechanisms such as cycle detection, recursion limits, or defensive handling of unexpected states when processing untrusted repository data and filesystem structures. This issue has been patched in versions 5.9.0 and 6.0.0-alpha.1. | CVSS3: 6.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-44740 Billy is an interface filesystem abstraction for Go. Prior to versions 5.9.0 and 6.0.0-alpha.1, multiple components may improperly handle crafted or malformed input, resulting in panics, infinite loops, uncontrolled recursion, or excessive resource consumption. These issues arise from insufficient validation and missing safety mechanisms such as cycle detection, recursion limits, or defensive handling of unexpected states when processing untrusted repository data and filesystem structures. This issue has been patched in versions 5.9.0 and 6.0.0-alpha.1. | CVSS3: 7.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-44740 Billy is an interface filesystem abstraction for Go. Prior to versions 5.9.0 and 6.0.0-alpha.1, multiple components may improperly handle crafted or malformed input, resulting in panics, infinite loops, uncontrolled recursion, or excessive resource consumption. These issues arise from insufficient validation and missing safety mechanisms such as cycle detection, recursion limits, or defensive handling of unexpected states when processing untrusted repository data and filesystem structures. This issue has been patched in versions 5.9.0 and 6.0.0-alpha.1. | CVSS3: 6.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-44740 Billy is an interface filesystem abstraction for Go. Prior to versions ... | CVSS3: 6.5 | 0% Низкий | около 2 месяцев назад | |
GHSA-m3xc-h892-ggx6 go-billy: Lack of depth and cycle detection in symlink resolution may lead to infinite loops and resource exhaustion | CVSS3: 6.5 | 0% Низкий | 3 месяца назад | |
openSUSE-SU-2026:21072-1 Security update for trivy | около 1 месяца назад | |||
openSUSE-SU-2026:21079-1 Security update for amazon-ssm-agent | около 1 месяца назад | |||
openSUSE-SU-2026:20956-1 Security update for trivy | около 2 месяцев назад | |||
SUSE-SU-2026:2468-1 Security update for amazon-ssm-agent | около 1 месяца назад | |||
SUSE-SU-2026:2467-1 Security update for amazon-ssm-agent | около 1 месяца назад | |||
openSUSE-SU-2026:21251-1 Security update for alloy | 23 дня назад | |||
SUSE-SU-2026:2824-1 Security update for alloy | 21 день назад | |||
SUSE-SU-2026:3056-1 Security update for terraform-provider-aws, terraform-provider-azurerm, terraform-provider-external, terraform-provider-google, terraform-provider-helm, terraform-provider-kubernetes, terraform-provider-local, terraform-provider-null, terraform-provider-random, terraform-provider-tls | 16 дней назад |
Уязвимостей на страницу