vulnerability
FreeBSD: (Multiple Advisories) (CVE-2024-24790): oauth2-proxy -- multiple vulnerabilities
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
10 | (AV:N/AC:L/Au:N/C:C/I:C/A:C) | Jun 5, 2024 | Jun 16, 2024 | Jan 28, 2025 |
Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
Jun 5, 2024
Added
Jun 16, 2024
Modified
Jan 28, 2025
Description
The various Is methods (IsPrivate, IsLoopback, etc) did not work as expected for IPv4-mapped IPv6 addresses, returning false for addresses which would return true in their traditional IPv4 forms.
Solution(s)
freebsd-upgrade-package-go121freebsd-upgrade-package-go122freebsd-upgrade-package-oauth2-proxyfreebsd-upgrade-package-traefik
References

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.