VDB
RHSA-2024:1433
RHSA-2024:1433
PUBLISHED
CVSS 5.5 MEDIUM
A flaw was found in the golang standard library, go/parser. When calling any Parse functions on the Go source code, which contains deeply nested types or declarations, a panic can occur due to stack exhaustion. This issue allows an attacker to impact system availability.
Risk Scores
CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat | mta/mta-analyzer-addon-rhel9@sha256:9b3bd8a8bc45ebb2ebfbd13cd571bd52d5d210b82e760ef8ca49d597709d7f83_amd64 as a component of MTA 7.0 for RHEL 9 | * |
| Red Hat | mta/mta-cli-rhel9@sha256:afc5c7e7d8cd563a47a6475eb9c23e31553eeeaa0709407a8cd1e7492657ea08_amd64 as a component of MTA 7.0 for RHEL 9 | * |
| Red Hat | mta/mta-rhel8-operator@sha256:cc32dfeeb33b7e2d2a63098b2c1c09999a955b69349cbe3e3902fc1101d176a0_amd64 as a component of MTA 7.0 for RHEL 8 | * |
| Red Hat | mta/mta-windup-shim-rhel9@sha256:4a35cbbe8c24232c138460ff50d1076392136ddedb7111c26ab2b074ad4017a7_amd64 as a component of MTA 7.0 for RHEL 9 | * |
| Red Hat | mta/mta-analyzer-lsp-rhel9@sha256:e318451c6efa1559657e9fe928087ff8fea30478d64f4cb75c5919c5279ebba1_amd64 as a component of MTA 7.0 for RHEL 9 | * |
| Red Hat | mta/mta-windup-shim-rhel9@sha256:3322ff5bdd8d9422567b37888cfe132d48455503e62a38953d5b318d80a02c91_arm64 as a component of MTA 7.0 for RHEL 9 | * |
| Red Hat | mta/mta-hub-rhel9@sha256:5690f54c7dde45d95b407c0f1393a8e01e6f8e5512a2595ef8effe74b19a6d4a_amd64 as a component of MTA 7.0 for RHEL 9 | * |
| Red Hat | mta/mta-operator-bundle@sha256:b8c09648ffba53778128e145ab66b347f68e7960eaa345830363313f9d564d88_amd64 as a component of MTA 7.0 for RHEL 9 | * |
| Red Hat | mta/mta-ui-rhel9@sha256:06c7b18081e2285b29082e26bd013a8d8d464a7641dd8d285e4909ca86514fde_amd64 as a component of MTA 7.0 for RHEL 9 | * |
| Red Hat | mta/mta-cli-rhel9@sha256:d7e65ce9ab3b1d91205a2edbb4293cb8362a323b650a3daf7caf9103ae258812_arm64 as a component of MTA 7.0 for RHEL 9 | * |
| Red Hat | mta/mta-analyzer-lsp-rhel9@sha256:b0a3d36ec379c6c796d18e31b238f2112a3a6ab31f68798c36fb3b588477c451_arm64 as a component of MTA 7.0 for RHEL 9 | * |
Timeline
- Mar 20, 2024 CVE Published
- Aug 4, 2026 CVE Updated
- Aug 4, 2026 Distribution Patch
- Aug 4, 2026 Distribution Patch
- Aug 4, 2026 Security Advisory
- Aug 4, 2026 Security Advisory
References
- https://access.redhat.com/errata/RHSA-2024:1433 advisory
- https://access.redhat.com/security/updates/classification/#moderate advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2107376 issue
- https://issues.redhat.com/browse/MTA-1255 advisory
- https://issues.redhat.com/browse/MTA-1468 advisory
- https://issues.redhat.com/browse/MTA-1648 advisory
- https://issues.redhat.com/browse/MTA-1721 advisory
- https://issues.redhat.com/browse/MTA-1726 advisory
- https://issues.redhat.com/browse/MTA-1785 advisory
- https://issues.redhat.com/browse/MTA-1790 advisory
- https://issues.redhat.com/browse/MTA-1845 advisory
- https://issues.redhat.com/browse/MTA-1868 advisory
- https://issues.redhat.com/browse/MTA-1872 advisory
- https://issues.redhat.com/browse/MTA-1880 advisory
- https://issues.redhat.com/browse/MTA-1888 advisory
- https://issues.redhat.com/browse/MTA-1955 advisory
- https://issues.redhat.com/browse/MTA-1956 advisory
- https://issues.redhat.com/browse/MTA-1958 advisory
- https://issues.redhat.com/browse/MTA-1963 advisory
- https://issues.redhat.com/browse/MTA-1964 advisory
…and 41 more