vulnerability

Debian: CVE-2016-9123: golang-gopkg-square-go-jose.v1 -- security update

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:P/A:N)
Published
03/28/2017
Added
07/30/2024
Modified
07/30/2024

Description

go-jose before 1.0.5 suffers from a CBC-HMAC integer overflow on 32-bit architectures. An integer overflow could lead to authentication bypass for CBC-HMAC encrypted ciphertexts on 32-bit architectures.

Solution

debian-upgrade-golang-gopkg-square-go-jose-v1
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.