VDB

RHSA-2024%3A10883

RHSA-2024%3A10883 PUBLISHED CVSS 5.900000095367432 MEDIUM

A flaw was found in the go/parser package of the Golang standard library. Calling any Parse functions on Go source code containing deeply nested literals can cause a panic due to stack exhaustion.

Risk Scores

CVSS 3.1
5.900000095367432
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

Affected Products

VendorProductVersions
Red Hatrhosp-rhel8/osp-director-agent@sha256:7924ce959b8f61cb616be22d86c827a18d760793efa3c94e4f8126e4c9284435_amd64 as a component of Red Hat OpenStack Platform 16.2rhosp-rhel8/osp-director-agent@sha256:7924ce959b8f61cb616be22d86c827a18d760793efa3c94e4f8126e4c9284435_amd64
Red Hatrhosp-rhel8/osp-director-downloader@sha256:f46899b93e13479c9d9745dade9b492295b4e8837a4860148537b080c87da132_amd64 as a component of Red Hat OpenStack Platform 16.2*
Red Hatrhosp-rhel8/osp-director-operator-bundle@sha256:7343bf678b1eaad5782a067ff808052f7c1870d0acbac93bc6da07a4aa86db7a_amd64 as a component of Red Hat OpenStack Platform 16.2*
Red Hatrhosp-rhel8/osp-director-operator@sha256:0c12f081a27a205aefcd7aed040a28a156f2e5a78731bc9c6bf088bddacccb05_amd64 as a component of Red Hat OpenStack Platform 16.2rhosp-rhel8/osp-director-operator@sha256:0c12f081a27a205aefcd7aed040a28a156f2e5a78731bc9c6bf088bddacccb05_amd64

Timeline

  • Dec 9, 2024 CVE Published
  • Apr 24, 2026 CVE Updated
  • Apr 25, 2026 Distribution Patch
  • Apr 25, 2026 Distribution Patch
  • Apr 25, 2026 Security Advisory
  • Apr 25, 2026 Security Advisory
  • Apr 25, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›