VYPR

rpm package

opensuse/amazon-cloudwatch-agent&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/amazon-cloudwatch-agent&distro=openSUSE%20Tumbleweed

Vulnerabilities (3)

  • CVE-2026-41178MedJun 4, 2026
    affected < 1.300071.0-2.1fixed 1.300071.0-2.1

    OpenTelemetry-Go is the Go implementation of OpenTelemetry. Versions 1.41.0 and 1.43.0 removed raw-length rejection and it causes `Parse` to process arbitrarily large/invalid baggage headers and log errors, enabling DoS via oversized inputs. Versions 1.42.0 and 1.44.0 fix the iss

  • CVE-2026-41602HigApr 28, 2026
    affected < 1.300066.1-1.1fixed 1.300066.1-1.1

    Integer Overflow or Wraparound vulnerability in Apache Thrift TFramedTransport Go language implementation This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes the issue.

  • CVE-2026-33186CriMar 20, 2026
    affected < 1.300064.0-2.1fixed 1.300064.0-2.1

    gRPC-Go is the Go language implementation of gRPC. Versions prior to 1.79.3 have an authorization bypass resulting from improper input validation of the HTTP/2 `:path` pseudo-header. The gRPC-Go server was too lenient in its routing logic, accepting requests where the `:path` omi