VDB
BDU%3A2023-03471
BDU%3A2023-03471
PUBLISHED
CVSS 10 CRITICAL
Уязвимость языка программирования Go, связанная с ошибками при обработке пробельных символов в контексте JavaScript, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации
Risk Scores
CVSS 2.0
10
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Inc., Novell Inc., Сообщество свободного программного обеспечения, ООО «Ред Софт», The Go Project | Red Hat Enterprise Linux, openSUSE Tumbleweed, Red Hat Quay, Red Hat AMQ Broker, Red Hat 3scale API Management Platform, Debian GNU/Linux, РЕД ОС (запись в едином реестре российских программ №3751), OpenSUSE Leap, Red Hat OpenShift GitOps, Suse Linux Enterprise Server, Red Hat OpenShift Container Platform, Suse Linux Enterprise Desktop, SUSE Linux Enterprise Server for SAP Applications, Red Hat OpenStack Platform, SUSE Manager Retail Branch Server, SUSE Manager Server, SUSE Linux Enterprise High Performance Computing, SUSE Enterprise Storage, SUSE Linux Enterprise Module for Development Tools, OpenShift Developer Tools and Services, SUSE Linux Enterprise Real Time, Red Hat OpenShift Data Science (RHODS), Migration Toolkit for Virtualization, OpenShift Serverless, Go, Red Hat Migration Toolkit for Containers, Red Hat Developer Tools, OpenShift Dev Spaces, OpenShift Pipelines, SUSE Liberty Linux, Red Hat Ansible Automation Platform, Red Hat Ceph Storage, multicluster engine for Kubernetes, Openshift Service Mesh |
Timeline
- Jun 29, 2023 CVE Published
- Dec 5, 2024 CVE Updated
References
- https://www.rapid7.com/db/vulnerabilities/suse-cve-2023-24540/ url
- https://pkg.go.dev/vuln/GO-2023-1752 url
- https://groups.google.com/g/golang-announce/c/MEb0UyuSMsU url
- https://go.dev/issue/59721 url
- https://go.dev/cl/491616 url
- https://security-tracker.debian.org/tracker/CVE-2023-24540 url
- https://www.suse.com/security/cve/CVE-2023-24540.html url
- https://access.redhat.com/security/cve/cve-2023-24540 url
- http://repo.red-soft.ru/redos/7.3c/x86_64/updates/ advisory