VYPR

apk package

chainguard/crossplane-provider-gcp-container

pkg:apk/chainguard/crossplane-provider-gcp-container

Vulnerabilities (63)

  • CVE-2024-34155MedSep 6, 2024
    affected < 1.8.1-r0fixed 1.8.1-r0

    Calling any of the Parse functions on Go source code which contains deeply nested literals can cause a panic due to stack exhaustion.

  • CVE-2024-24788MedMay 8, 2024
    affected < 1.1.0-r1fixed 1.1.0-r1

    A malformed DNS message in response to a query can cause the Lookup functions to get stuck in an infinite loop.

  • CVE-2024-24786HigMar 5, 2024
    affected < 1.0.1-r0fixed 1.0.1-r0

    The protojson.Unmarshal function can enter an infinite loop when unmarshaling certain forms of invalid JSON. This condition can occur when unmarshaling into a message which contains a google.protobuf.Any value, or when the UnmarshalOptions.DiscardUnknown option is set.

Page 4 of 4