Boletines de Vulnerabilidades

DSA-4503 golang-1.11 - security update


Información sobre el sistema

   
Software afectado Debian

Descripción

Three vulnerabilities have been discovered in the Go programming language;"net/url" accepted some invalid hosts in URLs which could result inauthorisation bypass in some applications and the HTTP/2 implementationwas susceptible to denial of service.

More info:

https://www.debian.org/security/2019/dsa-4503

Identificadores estándar

Propiedad Valor
CVE CVE-2019-9512 ,CVE-2019-9514 ,CVE-2019-14809 and DSA-4503.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2019-08-21

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT