github.com/docker/docker |
CVE-2024-41110 |
CRITICAL |
v27.0.3+incompatible |
23.0.15, 26.1.5, 27.1.1, 25.0.6 |
https://access.redhat.com/security/cve/CVE-2024-41110
https://github.com/moby/moby
https://github.com/moby/moby/commit/411e817ddf710ff8e08fa193da80cb78af708191
https://github.com/moby/moby/commit/42f40b1d6dd7562342f832b9cd2adf9e668eeb76
https://github.com/moby/moby/commit/65cc597cea28cdc25bea3b8a86384b4251872919
https://github.com/moby/moby/commit/852759a7df454cbf88db4e954c919becd48faa9b
https://github.com/moby/moby/commit/a31260625655cff9ae226b51757915e275e304b0
https://github.com/moby/moby/commit/a79fabbfe84117696a19671f4aa88b82d0f64fc1
https://github.com/moby/moby/commit/ae160b4edddb72ef4bd71f66b975a1a1cc434f00
https://github.com/moby/moby/commit/ae2b3666c517c96cbc2adf1af5591a6b00d4ec0f
https://github.com/moby/moby/commit/cc13f952511154a2866bddbb7dddebfe9e83b801
https://github.com/moby/moby/commit/fc274cd2ff4cf3b48c91697fb327dd1fb95588fb
https://github.com/moby/moby/security/advisories/GHSA-v23v-6jw2-98fq
https://lists.debian.org/debian-lts-announce/2024/10/msg00009.html
https://nvd.nist.gov/vuln/detail/CVE-2024-41110
https://security.netapp.com/advisory/ntap-20240802-0001/
https://ubuntu.com/security/notices/USN-7161-1
https://www.cve.org/CVERecord?id=CVE-2024-41110
https://www.docker.com/blog/docker-security-advisory-docker-engine-authz-plugin
https://www.docker.com/blog/docker-security-advisory-docker-engine-authz-plugin/
|
github.com/go-git/go-git/v5 |
CVE-2025-21613 |
CRITICAL |
v5.12.0 |
5.13.0 |
https://access.redhat.com/errata/RHSA-2025:0401
https://access.redhat.com/security/cve/CVE-2025-21613
https://bugzilla.redhat.com/2335888
https://bugzilla.redhat.com/2335901
https://bugzilla.redhat.com/show_bug.cgi?id=2335888
https://bugzilla.redhat.com/show_bug.cgi?id=2335901
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-21613
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-21614
https://errata.almalinux.org/8/ALSA-2025-0401.html
https://errata.rockylinux.org/RLSA-2025:0401
https://github.com/go-git/go-git
https://github.com/go-git/go-git/security/advisories/GHSA-v725-9546-7q7m
https://linux.oracle.com/cve/CVE-2025-21613.html
https://linux.oracle.com/errata/ELSA-2025-0401.html
https://nvd.nist.gov/vuln/detail/CVE-2025-21613
https://www.cve.org/CVERecord?id=CVE-2025-21613
|
github.com/go-git/go-git/v5 |
CVE-2025-21614 |
HIGH |
v5.12.0 |
5.13.0 |
https://access.redhat.com/errata/RHSA-2025:0401
https://access.redhat.com/security/cve/CVE-2025-21614
https://bugzilla.redhat.com/2335888
https://bugzilla.redhat.com/2335901
https://bugzilla.redhat.com/show_bug.cgi?id=2335888
https://bugzilla.redhat.com/show_bug.cgi?id=2335901
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-21613
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-21614
https://errata.almalinux.org/8/ALSA-2025-0401.html
https://errata.rockylinux.org/RLSA-2025:0401
https://github.com/go-git/go-git
https://github.com/go-git/go-git/security/advisories/GHSA-r9px-m959-cxf4
https://linux.oracle.com/cve/CVE-2025-21614.html
https://linux.oracle.com/errata/ELSA-2025-0401.html
https://nvd.nist.gov/vuln/detail/CVE-2025-21614
https://www.cve.org/CVERecord?id=CVE-2025-21614
|
github.com/golang-jwt/jwt/v4 |
CVE-2024-51744 |
LOW |
v4.5.0 |
4.5.1 |
https://access.redhat.com/security/cve/CVE-2024-51744
https://github.com/golang-jwt/jwt
https://github.com/golang-jwt/jwt/commit/7b1c1c00a171c6c79bbdb40e4ce7d197060c1c2c
https://github.com/golang-jwt/jwt/security/advisories/GHSA-29wx-vh33-7x7r
https://nvd.nist.gov/vuln/detail/CVE-2024-51744
https://www.cve.org/CVERecord?id=CVE-2024-51744
|
golang.org/x/crypto |
CVE-2024-45337 |
CRITICAL |
v0.24.0 |
0.31.0 |
http://www.openwall.com/lists/oss-security/2024/12/11/2
https://access.redhat.com/security/cve/CVE-2024-45337
https://github.com/golang/crypto
https://github.com/golang/crypto/commit/b4f1988a35dee11ec3e05d6bf3e90b695fbd8909
https://go.dev/cl/635315
https://go.dev/issue/70779
https://groups.google.com/g/golang-announce/c/-nPEi39gI4Q/m/cGVPJCqdAQAJ
https://nvd.nist.gov/vuln/detail/CVE-2024-45337
https://pkg.go.dev/vuln/GO-2024-3321
https://security.netapp.com/advisory/ntap-20250131-0007
https://security.netapp.com/advisory/ntap-20250131-0007/
https://www.cve.org/CVERecord?id=CVE-2024-45337
|
golang.org/x/net |
CVE-2024-45338 |
HIGH |
v0.26.0 |
0.33.0 |
https://access.redhat.com/security/cve/CVE-2024-45338
https://cs.opensource.google/go/x/net
https://github.com/golang/go/issues/70906
https://go-review.googlesource.com/c/net/+/637536
https://go.dev/cl/637536
https://go.dev/issue/70906
https://groups.google.com/g/golang-announce/c/wSCRmFnNmPA/m/Lvcd0mRMAwAJ
https://nvd.nist.gov/vuln/detail/CVE-2024-45338
https://pkg.go.dev/vuln/GO-2024-3333
https://ubuntu.com/security/notices/USN-7197-1
https://www.cve.org/CVERecord?id=CVE-2024-45338
|
google.golang.org/grpc |
GHSA-xr7q-jx4m-x55m |
LOW |
v1.64.0 |
1.64.1 |
https://github.com/grpc/grpc-go
https://github.com/grpc/grpc-go/commit/ab292411ddc0f3b7a7786754d1fe05264c3021eb
https://github.com/grpc/grpc-go/security/advisories/GHSA-xr7q-jx4m-x55m
|
stdlib |
CVE-2024-34156 |
HIGH |
1.22.5 |
1.22.7, 1.23.1 |
https://access.redhat.com/errata/RHSA-2024:9473
https://access.redhat.com/security/cve/CVE-2024-34156
https://bugzilla.redhat.com/2310528
https://bugzilla.redhat.com/2318052
https://bugzilla.redhat.com/show_bug.cgi?id=2262921
https://bugzilla.redhat.com/show_bug.cgi?id=2310528
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-1394
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-34156
https://errata.almalinux.org/9/ALSA-2024-9473.html
https://errata.rockylinux.org/RLSA-2024:7262
https://github.com/golang/go/commit/2092294f2b097c5828f4eace6c98a322c1510b01 (go1.22.7)
https://github.com/golang/go/commit/fa8ff1a46deb6c816304441ec6740ec112e19012 (go1.23.1)
https://go.dev/cl/611239
https://go.dev/issue/69139
https://groups.google.com/g/golang-announce/c/K-cEzDeCtpc
https://groups.google.com/g/golang-dev/c/S9POB9NCTdk
https://linux.oracle.com/cve/CVE-2024-34156.html
https://linux.oracle.com/errata/ELSA-2024-9473.html
https://nvd.nist.gov/vuln/detail/CVE-2024-34156
https://pkg.go.dev/vuln/GO-2024-3106
https://security.netapp.com/advisory/ntap-20240926-0004/
https://ubuntu.com/security/notices/USN-7081-1
https://ubuntu.com/security/notices/USN-7109-1
https://ubuntu.com/security/notices/USN-7111-1
https://www.cve.org/CVERecord?id=CVE-2024-34156
|
stdlib |
CVE-2024-34155 |
MEDIUM |
1.22.5 |
1.22.7, 1.23.1 |
https://access.redhat.com/errata/RHSA-2024:9459
https://access.redhat.com/security/cve/CVE-2024-34155
https://bugzilla.redhat.com/2310527
https://bugzilla.redhat.com/2310528
https://bugzilla.redhat.com/2310529
https://bugzilla.redhat.com/2315691
https://bugzilla.redhat.com/2315887
https://bugzilla.redhat.com/2317458
https://bugzilla.redhat.com/2317467
https://bugzilla.redhat.com/show_bug.cgi?id=2310527
https://bugzilla.redhat.com/show_bug.cgi?id=2310528
https://bugzilla.redhat.com/show_bug.cgi?id=2310529
https://bugzilla.redhat.com/show_bug.cgi?id=2315691
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-34155
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-34156
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-34158
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-9341
https://errata.almalinux.org/9/ALSA-2024-9459.html
https://errata.rockylinux.org/RLSA-2024:8039
https://github.com/golang/go/commit/53487e5477151ed75da50e50a0ba8f1ca64c00a3 (go1.23.1)
https://github.com/golang/go/commit/b232596139dbe96a62edbe3a2a203e856bf556eb (go1.22.7)
https://go.dev/cl/611238
https://go.dev/issue/69138
https://groups.google.com/g/golang-announce/c/K-cEzDeCtpc
https://groups.google.com/g/golang-dev/c/S9POB9NCTdk
https://linux.oracle.com/cve/CVE-2024-34155.html
https://linux.oracle.com/errata/ELSA-2024-9459.html
https://nvd.nist.gov/vuln/detail/CVE-2024-34155
https://pkg.go.dev/vuln/GO-2024-3105
https://security.netapp.com/advisory/ntap-20240926-0005/
https://ubuntu.com/security/notices/USN-7081-1
https://ubuntu.com/security/notices/USN-7109-1
https://ubuntu.com/security/notices/USN-7111-1
https://www.cve.org/CVERecord?id=CVE-2024-34155
|
stdlib |
CVE-2024-34158 |
MEDIUM |
1.22.5 |
1.22.7, 1.23.1 |
https://access.redhat.com/errata/RHSA-2024:9459
https://access.redhat.com/security/cve/CVE-2024-34158
https://bugzilla.redhat.com/2310527
https://bugzilla.redhat.com/2310528
https://bugzilla.redhat.com/2310529
https://bugzilla.redhat.com/2315691
https://bugzilla.redhat.com/2315887
https://bugzilla.redhat.com/2317458
https://bugzilla.redhat.com/2317467
https://bugzilla.redhat.com/show_bug.cgi?id=2310527
https://bugzilla.redhat.com/show_bug.cgi?id=2310528
https://bugzilla.redhat.com/show_bug.cgi?id=2310529
https://bugzilla.redhat.com/show_bug.cgi?id=2315691
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-34155
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-34156
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-34158
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-9341
https://errata.almalinux.org/9/ALSA-2024-9459.html
https://errata.rockylinux.org/RLSA-2024:8039
https://github.com/golang/go/commit/032ac075c20c01c6c35a672d1542d3e98eab84ea (go1.23.1)
https://github.com/golang/go/commit/d4c53812e6ce2ac368173d7fcd31d0ecfcffb002 (go1.22.7)
https://go.dev/cl/611240
https://go.dev/issue/69141
https://groups.google.com/g/golang-announce/c/K-cEzDeCtpc
https://groups.google.com/g/golang-dev/c/S9POB9NCTdk
https://linux.oracle.com/cve/CVE-2024-34158.html
https://linux.oracle.com/errata/ELSA-2024-9459.html
https://nvd.nist.gov/vuln/detail/CVE-2024-34158
https://pkg.go.dev/vuln/GO-2024-3107
https://security.netapp.com/advisory/ntap-20241004-0003/
https://ubuntu.com/security/notices/USN-7081-1
https://ubuntu.com/security/notices/USN-7109-1
https://ubuntu.com/security/notices/USN-7111-1
https://www.cve.org/CVERecord?id=CVE-2024-34158
|
stdlib |
CVE-2024-45336 |
MEDIUM |
1.22.5 |
1.22.11, 1.23.5, 1.24.0-rc.2 |
https://access.redhat.com/security/cve/CVE-2024-45336
https://go.dev/cl/643100
https://go.dev/issue/70530
https://groups.google.com/g/golang-dev/c/CAWXhan3Jww/m/bk9LAa-lCgAJ
https://groups.google.com/g/golang-dev/c/bG8cv1muIBM/m/G461hA6lCgAJ
https://nvd.nist.gov/vuln/detail/CVE-2024-45336
https://pkg.go.dev/vuln/GO-2025-3420
https://www.cve.org/CVERecord?id=CVE-2024-45336
|
stdlib |
CVE-2024-45341 |
MEDIUM |
1.22.5 |
1.22.11, 1.23.5, 1.24.0-rc.2 |
https://access.redhat.com/security/cve/CVE-2024-45341
https://go.dev/cl/643099
https://go.dev/issue/71156
https://groups.google.com/g/golang-dev/c/CAWXhan3Jww/m/bk9LAa-lCgAJ
https://groups.google.com/g/golang-dev/c/bG8cv1muIBM/m/G461hA6lCgAJ
https://nvd.nist.gov/vuln/detail/CVE-2024-45341
https://pkg.go.dev/vuln/GO-2025-3373
https://www.cve.org/CVERecord?id=CVE-2024-45341
|
stdlib |
CVE-2025-22866 |
MEDIUM |
1.22.5 |
1.22.12, 1.23.6, 1.24.0-rc.3 |
https://access.redhat.com/security/cve/CVE-2025-22866
https://go.dev/cl/643735
https://go.dev/issue/71383
https://groups.google.com/g/golang-announce/c/xU1ZCHUZw3k
https://nvd.nist.gov/vuln/detail/CVE-2025-22866
https://pkg.go.dev/vuln/GO-2025-3447
https://www.cve.org/CVERecord?id=CVE-2025-22866
|
No Misconfigurations found |