VDB
BDU%3A2024-10793
BDU%3A2024-10793
PUBLISHED
CVSS 9.399999618530273 CRITICAL
Уязвимость компонента Curve.IsOnCurve языка программирования Golang, позволяющая нарушителю оказывать влияние на доступность и целостность ресурса
Risk Scores
CVSS 2.0
9.399999618530273
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Сообщество свободного программного обеспечения, Novell Inc., Red Hat Inc., ООО «Ред Софт», The Go Project, АО "НППКТ" | Debian GNU/Linux, SUSE Linux Enterprise High Performance Computing, Red Hat Enterprise Linux, SUSE Enterprise Storage, Red Hat Ceph Storage, Red Hat Storage, OpenShift Container Platform, Red Hat Quay, РЕД ОС (запись в едином реестре российских программ №3751), Red Hat Advanced Cluster Management for Kubernetes, Go, Red Hat OpenStack Platform, Service Telemetry Framework, OpenShift Developer Tools and Services, ОСОН ОСнова Оnyx (запись в едином реестре российских программ №5913), Red Hat OpenShift Virtualization, OpenShift Serverless, Red Hat Ansible Automation Platform, Red Hat Openshift Data Foundation, Red Hat Developer Tools, Migration Toolkit for Containers, OpenShift API for Data Protection, Openshift Service Mesh, Logging subsystem for Red Hat OpenShift |
Timeline
- Dec 5, 2024 CVE Published
- Oct 24, 2025 CVE Updated
References
- https://redos.red-soft.ru/support/secure/ url
- https://www.suse.com/security/cve/CVE-2022-23806.html url
- https://ubuntu.com/security/CVE-2022-23806 url
- https://access.redhat.com/security/cve/cve-2022-23806 url
- https://поддержка.нппкт.рф/bin/view/ОСнова/Обновления/2.6/ url
- https://groups.google.com/g/golang-announce/c/SUsQn0aSgPQ advisory
- http://repo.red-soft.ru/redos/7.3c/x86_64/updates/ advisory
- https://security-tracker.debian.org/tracker/CVE-2022-23806 advisory