2020-08-21
ALT-BU-2020-3986-1
Branch p9 update bulletin.
Closed vulnerabilities
Published: 2021-05-25
BDU:2021-02857
Уязвимость средства разработки GoLang прикладного программного обеспечения Аврора Центр, связанная с выполнением цикла с недоступным условием выхода, позволяющая нарушителю вызвать отказ в обслуживании
Severity: HIGH (7.5)
Vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
References:
Published: 2020-08-06
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2020-16845
Go before 1.13.15 and 14.x before 1.14.7 can have an infinite read loop in ReadUvarint and ReadVarint in encoding/binary via invalid inputs.
Severity: HIGH (7.5)
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
References:
- openSUSE-SU-2020:1178
- openSUSE-SU-2020:1178
- openSUSE-SU-2020:1194
- openSUSE-SU-2020:1194
- openSUSE-SU-2020:1405
- openSUSE-SU-2020:1405
- openSUSE-SU-2020:1407
- openSUSE-SU-2020:1407
- https://groups.google.com/forum/#%21topic/golang-announce/_ulYYcIWg3Q
- https://groups.google.com/forum/#%21topic/golang-announce/_ulYYcIWg3Q
- https://groups.google.com/forum/#%21topic/golang-announce/NyPIaucMgXo
- https://groups.google.com/forum/#%21topic/golang-announce/NyPIaucMgXo
- [debian-lts-announce] 20201121 [SECURITY] [DLA 2459-1] golang-1.7 security update
- [debian-lts-announce] 20201121 [SECURITY] [DLA 2459-1] golang-1.7 security update
- [debian-lts-announce] 20201121 [SECURITY] [DLA 2460-1] golang-1.8 security update
- [debian-lts-announce] 20201121 [SECURITY] [DLA 2460-1] golang-1.8 security update
- FEDORA-2020-e384830a0d
- FEDORA-2020-e384830a0d
- FEDORA-2020-deff052e7a
- FEDORA-2020-deff052e7a
- FEDORA-2020-a55f130272
- FEDORA-2020-a55f130272
- FEDORA-2020-b190375a37
- FEDORA-2020-b190375a37
- https://security.netapp.com/advisory/ntap-20200924-0002/
- https://security.netapp.com/advisory/ntap-20200924-0002/
- DSA-4848
- DSA-4848
- https://www.oracle.com/security-alerts/cpuApr2021.html
- https://www.oracle.com/security-alerts/cpuApr2021.html
Package alterator-limits updated to version 0.2-alt1 for branch p9 in task 256515.
Closed bugs
В поле Limit можно ввести только значение кратное 512