VYPR

apk package

chainguard/cadence-fips-server

pkg:apk/chainguard/cadence-fips-server

Vulnerabilities (42)

  • CVE-2020-8911MedAug 11, 2020
    affected < 0fixed 0

    A padding oracle vulnerability exists in the AWS S3 Crypto SDK for GoLang versions prior to V2. The SDK allows users to encrypt files with AES-CBC without computing a Message Authentication Code (MAC), which then allows an attacker who has write access to the target's S3 bucket a

  • CVE-2019-0210HigOct 29, 2019
    affected < 1.4.1-r0fixed 1.4.1-r0

    In Apache Thrift 0.9.3 to 0.12.0, a server implemented in Go using TJSONProtocol or TSimpleJSONProtocol may panic when feed with invalid input data.

Page 3 of 3