VDB

RHSA-2024:1433

RHSA-2024:1433 PUBLISHED CVSS 5.5 MEDIUM

A flaw was found in the golang standard library, go/parser. When calling any Parse functions on the Go source code, which contains deeply nested types or declarations, a panic can occur due to stack exhaustion. This issue allows an attacker to impact system availability.

Risk Scores

CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Affected Products

VendorProductVersions
Red Hatmta/mta-analyzer-addon-rhel9@sha256:9b3bd8a8bc45ebb2ebfbd13cd571bd52d5d210b82e760ef8ca49d597709d7f83_amd64 as a component of MTA 7.0 for RHEL 9*
Red Hatmta/mta-cli-rhel9@sha256:afc5c7e7d8cd563a47a6475eb9c23e31553eeeaa0709407a8cd1e7492657ea08_amd64 as a component of MTA 7.0 for RHEL 9*
Red Hatmta/mta-rhel8-operator@sha256:cc32dfeeb33b7e2d2a63098b2c1c09999a955b69349cbe3e3902fc1101d176a0_amd64 as a component of MTA 7.0 for RHEL 8*
Red Hatmta/mta-windup-shim-rhel9@sha256:4a35cbbe8c24232c138460ff50d1076392136ddedb7111c26ab2b074ad4017a7_amd64 as a component of MTA 7.0 for RHEL 9*
Red Hatmta/mta-analyzer-lsp-rhel9@sha256:e318451c6efa1559657e9fe928087ff8fea30478d64f4cb75c5919c5279ebba1_amd64 as a component of MTA 7.0 for RHEL 9*
Red Hatmta/mta-windup-shim-rhel9@sha256:3322ff5bdd8d9422567b37888cfe132d48455503e62a38953d5b318d80a02c91_arm64 as a component of MTA 7.0 for RHEL 9*
Red Hatmta/mta-hub-rhel9@sha256:5690f54c7dde45d95b407c0f1393a8e01e6f8e5512a2595ef8effe74b19a6d4a_amd64 as a component of MTA 7.0 for RHEL 9*
Red Hatmta/mta-operator-bundle@sha256:b8c09648ffba53778128e145ab66b347f68e7960eaa345830363313f9d564d88_amd64 as a component of MTA 7.0 for RHEL 9*
Red Hatmta/mta-ui-rhel9@sha256:06c7b18081e2285b29082e26bd013a8d8d464a7641dd8d285e4909ca86514fde_amd64 as a component of MTA 7.0 for RHEL 9*
Red Hatmta/mta-cli-rhel9@sha256:d7e65ce9ab3b1d91205a2edbb4293cb8362a323b650a3daf7caf9103ae258812_arm64 as a component of MTA 7.0 for RHEL 9*
Red Hatmta/mta-analyzer-lsp-rhel9@sha256:b0a3d36ec379c6c796d18e31b238f2112a3a6ab31f68798c36fb3b588477c451_arm64 as a component of MTA 7.0 for RHEL 9*

Timeline

  • Mar 20, 2024 CVE Published
  • Aug 4, 2026 CVE Updated
  • Aug 4, 2026 Distribution Patch
  • Aug 4, 2026 Distribution Patch
  • Aug 4, 2026 Security Advisory
  • Aug 4, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›