VYPR

rpm package

almalinux/delve

pkg:rpm/almalinux/delve

Vulnerabilities (83)

  • CVE-2021-33197MedAug 2, 2021
    affected < 1.6.0-1.module_el8.5.0+2604+960c7771fixed 1.6.0-1.module_el8.5.0+2604+960c7771

    In Go before 1.15.13 and 1.16.x before 1.16.5, some configurations of ReverseProxy (from net/http/httputil) result in a situation where an attacker is able to drop arbitrary headers.

  • CVE-2021-33196HigAug 2, 2021
    affected < 1.7.2-1.module_el8.6.0+2736+ec10aba8fixed 1.7.2-1.module_el8.6.0+2736+ec10aba8

    In archive/zip in Go before 1.15.13 and 1.16.x before 1.16.5, a crafted file count (in an archive's header) can cause a NewReader or OpenReader panic.

  • CVE-2021-33195HigAug 2, 2021
    affected < 1.6.0-1.module_el8.5.0+2604+960c7771fixed 1.6.0-1.module_el8.5.0+2604+960c7771

    Go before 1.15.13 and 1.16.x before 1.16.5 has functions for DNS lookups that do not validate replies from DNS servers, and thus a return value may contain an unsafe injection (e.g., XSS) that does not conform to the RFC1035 format.

Page 5 of 5