VDB
CVE-2025-22865
CVE-2025-22865
PUBLISHED
CVSS 8.699999809265137 HIGH
Go ist eine quelloffene Programmiersprache.
EPSS 0.60% · 45.3th percentile
Risk Scores
CVSS 4.0
8.699999809265137
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
EPSS Score
0.60%
45.3th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Golang | Golang Go <1.24rc2 | |
| Red Hat | Red Hat Enterprise Linux | |
| SUSE | SUSE Linux | |
| SUSE | SUSE openSUSE | |
| Golang | Golang Go <1.24 | |
| Golang | Golang Go <1.22.11 | |
| Ubuntu | Ubuntu Linux | |
| Golang | Golang Go <1.23.5 | |
| IBM | IBM Business Automation Workflow <24.0.1-IF002 | |
| IBM | IBM Business Automation Workflow <24.0.0-IF005 | |
| Oracle | Oracle Linux | |
| Xerox | Xerox FreeFlow Print Server 9 | |
| RESF | RESF Rocky Linux | |
| IBM | IBM App Connect Enterprise |
Timeline
- Jan 16, 2025 CVE Published
- Jan 28, 2025 EPSS Score
- Jan 28, 2025 PoC Published
- Jan 28, 2025 PoC Published
- Jan 28, 2025 PoC Published
- Jan 28, 2025 PoC Published
- Jan 28, 2025 PoC Published
- Jan 31, 2025 Coalition ESS Score
- Feb 12, 2025 EPSS Score
- Feb 27, 2025 EPSS Score
- Mar 14, 2025 EPSS Score
- Mar 29, 2025 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2025/wid-sec-w-2025-0111.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2025-0111 advisory
- https://groups.google.com/g/golang-announce/c/L8jWYHEfOlQ advisory
- https://groups.google.com/g/golang-announce/c/sSaUhLA-2SI advisory
- https://go.dev/issue/71156 advisory
- https://go.dev/issue/70530 advisory
- https://go.dev/issue/71249 advisory
- https://go.dev/issue/71216 advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/Q3ZTZP3RXZGJRRPGSFEUWJMYPA5WPOPW/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/YRIXY47SJKPKQTDVCPRO6E2DUY5GPEEU/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/ZW52JECN55QJ6BSQ4PZXG4RAAPBRCVGB/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/RQNJ3CKJG63VZGTT4HRQJYBPGOWBUF5C/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/TEFUHGEYXH2V4IV65LVVWOSXPYD2UOCT/ advisory
- https://access.redhat.com/errata/RHSA-2025:3131 advisory
- https://access.redhat.com/errata/RHSA-2025:3335 advisory
- https://access.redhat.com/errata/RHSA-2025:3593 advisory
- https://access.redhat.com/errata/RHSA-2025:3772 advisory
- https://linux.oracle.com/errata/ELSA-2025-3772.html advisory
- https://access.redhat.com/errata/RHSA-2025:3922 advisory
- https://www.ibm.com/support/pages/node/7232437 advisory
…and 19 more