VYPR

apk package

wolfi/jitsucom-bulker-syncctl

pkg:apk/wolfi/jitsucom-bulker-syncctl

Vulnerabilities (82)

  • CVE-2024-24787MedMay 8, 2024
    affected < 2.6.0-r1fixed 2.6.0-r1

    On Darwin, building a Go module which contains CGO can trigger arbitrary code execution when using the Apple version of ld, due to usage of the -lto_library flag in a "#cgo LDFLAGS" directive.

  • CVE-2023-50658HigFeb 29, 2024
    affected < 2.6.0-r2fixed 2.6.0-r2

    The jose2go component before 1.6.0 for Go allows attackers to cause a denial of service (CPU consumption) via a large p2c (aka PBES2 Count) value.

Page 5 of 5