VDB
BDU%3A2024-01979
BDU%3A2024-01979
PUBLISHED
CVSS 10 CRITICAL
Уязвимость пакета golang операционной системы Debian GNU/Linux, позволяющая нарушителю выполнить произвольный код
Risk Scores
CVSS 2.0
10
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Canonical Ltd., Red Hat Inc., Novell Inc., Сообщество свободного программного обеспечения, ООО «Ред Софт», The Go Project | Ubuntu, Red Hat Enterprise Linux, openSUSE Tumbleweed, Red Hat Storage, Red Hat AMQ Broker, Debian GNU/Linux, РЕД ОС (запись в едином реестре российских программ №3751), OpenSUSE Leap, SUSE Linux Enterprise Server for SAP Applications, Red Hat Openshift Data Foundation, Red Hat OpenShift GitOps, Suse Linux Enterprise Server, Red Hat OpenShift Container Platform, Suse Linux Enterprise Desktop, Red Hat OpenStack Platform, SUSE Manager Retail Branch Server, SUSE Manager Proxy, SUSE Manager Server, SUSE Linux Enterprise High Performance Computing, SUSE Enterprise Storage, SUSE Linux Enterprise Module for Development Tools, Red Hat Web Terminal, Node Maintenance Operator, Service Telemetry Framework, OpenShift Developer Tools and Services, SUSE Linux Enterprise Real Time, Red Hat Ceph Storage, Red Hat OpenShift Virtualization, OpenShift Serverless, Red Hat Developer Tools, Migration Toolkit for Applications, Red Hat Advanced Cluster Security, Self Node Remediation, Migration Toolkit for Containers, OpenShift API for Data Protection, Red Hat Ansible Automation Platform, Red Hat OpenShift distributed tracing, Red Hat Service Interconnect, SUSE Liberty Linux, Go, OpenShift Container Platform, Red Hat Advanced Cluster Security (RHACS) for Kubernetes, OpenShift |
Timeline
- Mar 14, 2024 CVE Published
- Dec 5, 2024 CVE Updated
References
- https://go-review.googlesource.com/c/go/+/482079 url
- https://github.com/golang/go/issues/59234 url
- https://groups.google.com/g/golang-announce/c/Xdv6JL9ENs8 url
- https://pkg.go.dev/vuln/GO-2023-1703 url
- https://security.gentoo.org/glsa/202311-09 url
- https://vuldb.com/?id.225158 url
- https://security-tracker.debian.org/tracker/CVE-2023-24538 url
- https://www.suse.com/security/cve/CVE-2023-24538.html url
- https://ubuntu.com/security/CVE-2023-24538 url
- http://repo.red-soft.ru/redos/7.3c/x86_64/updates/ url
- https://go.dev/issue/59234 advisory
- https://access.redhat.com/security/cve/CVE-2023-24538 advisory