跳转到帖子

Red Hat OpenShift: CVE-2024-34155: go/parser: golang: Calling any of the Parse functions containing deeply nested literals can cause a panic/stack exhaustion

recommended_posts

发布于
  • Members

Red Hat OpenShift: CVE-2024-34155: go/parser: golang: Calling any of the Parse functions containing deeply nested literals can cause a panic/stack exhaustion

Severity
4
CVSS
(AV:L/AC:M/Au:N/C:P/I:P/A:P)
Published
09/06/2024
Created
10/25/2024
Added
10/24/2024
Modified
01/30/2025

Description

Calling any of the Parse functions on Go source code which contains deeply nested literals can cause a panic due to stack exhaustion.

Solution(s)

  • linuxrpm-upgrade-podman

References

  • https://attackerkb.com/topics/cve-2024-34155
  • CVE - 2024-34155
  • RHSA-2024:10883
  • RHSA-2024:10895
  • RHSA-2024:10906
  • RHSA-2024:6908
  • RHSA-2024:6913
  • RHSA-2024:8014
  • RHSA-2024:8038
  • RHSA-2024:8039
  • RHSA-2024:8112
  • RHSA-2024:8219
  • RHSA-2024:8229
  • RHSA-2024:8232
  • RHSA-2024:8260
  • RHSA-2024:8263
  • RHSA-2024:8314
  • RHSA-2024:8315
  • RHSA-2024:8317
  • RHSA-2024:8318
  • RHSA-2024:8329
  • RHSA-2024:8337
  • RHSA-2024:8425
  • RHSA-2024:8428
  • RHSA-2024:8688
  • RHSA-2024:8690
  • RHSA-2024:8692
  • RHSA-2024:8694
  • RHSA-2024:8697
  • RHSA-2024:8700
  • RHSA-2024:8704
  • RHSA-2024:9454
  • RHSA-2024:9459
  • RHSA-2024:9485
  • RHSA-2024:9960
  • RHSA-2025:0771
View more
  • 查看数 696
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。

游客
回帖…