rpm package
opensuse/google-osconfig-agent&distro=openSUSE Leap 16.0
pkg:rpm/opensuse/google-osconfig-agent&distro=openSUSE%20Leap%2016.0
Vulnerabilities (23)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2025-47911 | Med | 5.3 | < 20260615.01-160000.1.2 | 20260615.01-160000.1.2 | Feb 5, 2026 | The html.Parse function in golang.org/x/net/html has quadratic parsing complexity when processing certain inputs, which can lead to denial of service (DoS) if an attacker provides specially crafted HTML content. | |
| CVE-2025-22868 | Hig | 7.5 | < 20260615.01-160000.1.2 | 20260615.01-160000.1.2 | Feb 26, 2025 | An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. | |
| CVE-2023-45288 | Hig | 7.5 | < 20260615.01-160000.1.2 | 20260615.01-160000.1.2 | Apr 4, 2024 | An attacker may cause an HTTP/2 endpoint to read arbitrary amounts of header data by sending an excessive number of CONTINUATION frames. Maintaining HPACK state requires parsing and processing all HEADERS and CONTINUATION frames on a connection. When a request's headers exceed Ma |
- affected < 20260615.01-160000.1.2fixed 20260615.01-160000.1.2
The html.Parse function in golang.org/x/net/html has quadratic parsing complexity when processing certain inputs, which can lead to denial of service (DoS) if an attacker provides specially crafted HTML content.
- affected < 20260615.01-160000.1.2fixed 20260615.01-160000.1.2
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing.
- affected < 20260615.01-160000.1.2fixed 20260615.01-160000.1.2
An attacker may cause an HTTP/2 endpoint to read arbitrary amounts of header data by sending an excessive number of CONTINUATION frames. Maintaining HPACK state requires parsing and processing all HEADERS and CONTINUATION frames on a connection. When a request's headers exceed Ma
Page 2 of 2