VDB
BDU%3A2024-02373
BDU%3A2024-02373
PUBLISHED
CVSS 2.5999999046325684 LOW
Уязвимость функции ticket_age_add языка программирования Go, позволяющая нарушителю получить несанкционированный доступ к идентификаторам сеанса
Risk Scores
CVSS 2.0
2.5999999046325684
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Inc., Novell Inc., Сообщество свободного программного обеспечения, Canonical Ltd., Fedora Project, ООО «Ред Софт», The Go Project | Red Hat Enterprise Linux, OpenSUSE Leap, Debian GNU/Linux, Red Hat Software Collections, openSUSE Tumbleweed, Ubuntu, Red Hat Quay, Red Hat 3scale API Management Platform, Fedora, РЕД ОС (запись в едином реестре российских программ №3751), SUSE Linux Enterprise High Performance Computing, Suse Linux Enterprise Server, SUSE Linux Enterprise Server for SAP Applications, SUSE Manager Proxy, SUSE Manager Server, Suse Linux Enterprise Desktop, Red Hat Openshift Data Foundation, SUSE Linux Enterprise Module for Development Tools, Red Hat Advanced Cluster Management for Kubernetes, Red Hat OpenShift GitOps, Red Hat OpenShift Container Platform, Red Hat Openshift Container Storage, SUSE Manager Retail Branch Server, Red Hat OpenStack Platform, SUSE Enterprise Storage, Red Hat Web Terminal, Service Telemetry Framework, OpenShift Developer Tools and Services, SUSE Linux Enterprise Real Time, Red Hat Ceph Storage, Red Hat OpenShift on AWS, Migration Toolkit for Virtualization, Red Hat OpenShift Virtualization, OpenShift Serverless, Red Hat Ansible Automation Platform, Red Hat Developer Tools, Red Hat Advanced Cluster Security, Migration Toolkit for Containers, OpenShift Pipelines, Openshift Service Mesh, SUSE Liberty Linux, Go, multicluster engine for Kubernetes, OpenShift API for Data Protection, OpenShift Secondary Scheduler Operator, Red Hat OpenShift distributed tracing |
Timeline
- Mar 28, 2024 CVE Published
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
References
- https://redos.red-soft.ru/support/secure/ url
- https://go-review.googlesource.com/c/go/+/405994 url
- http://repo.red-soft.ru/redos/7.3c/x86_64/updates/ url
- https://security-tracker.debian.org/tracker/CVE-2022-30629 url
- https://access.redhat.com/security/cve/CVE-2022-30629 url
- https://ubuntu.com/security/notices/USN-6038-1 url
- https://ubuntu.com/security/notices/USN-6038-2 url
- https://lists.fedoraproject.org/archives/search?mlist=package-announce%40lists.fedoraproject.org&q=2022-30629 url
- https://go.dev/issue/52814 url
- https://go.googlesource.com/go/+/fe4de36198794c447fbd9d7cc2d7199a506c76a5 advisory
- https://pkg.go.dev/vuln/GO-2022-0531 advisory
- https://www.suse.com/security/cve/CVE-2022-30629.html advisory