VDB
BDU%3A2024-04962
BDU%3A2024-04962
PUBLISHED
CVSS 7.5 HIGH
Уязвимость функции ParseAddressList пакета net/mail языка программирования Go, позволяющая нарушителю выполнить спуфинг-атаки
Risk Scores
CVSS 2.0
7.5
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Inc., Сообщество свободного программного обеспечения, The Go Project | Red Hat Enterprise Linux, Red Hat Storage, Debian GNU/Linux, Go, OpenShift Container Platform |
Timeline
- Jul 3, 2024 CVE Published
- Mar 19, 2026 Distribution Patch
References
- https://www.cybersecurity-help.cz/vdb/SB2024030750 url
- https://access.redhat.com/errata/RHSA-2024:4028 url
- https://go.dev/issue/65083 url
- https://security-tracker.debian.org/tracker/CVE-2024-24784 url
- https://github.com/golang/go/commit/5330cd225ba54c7dc78c1b46dcdf61a4671a632c url
- https://github.com/golang/go/commit/263c059b09fdd40d9dd945f2ecb20c89ea28efe5 url
- https://github.com/golang/go/issues/65083 url
- https://go.dev/cl/555596 advisory