PT-2026-40715 · Go-Billy+1 · Go-Billy+1

·

CVE-2026-44740

·

Publicado

2026-05-13

·

Atualizado

2026-08-10

CVSS v3.1

6.5

Média

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Nome do Software Vulnerável e Versões Afetadas go-billy versões anteriores a v5
Descrição Múltiplos componentes lidam de forma inadequada com entradas manipuladas ou malformadas, o que pode levar a pânicos, loops infinitos, recursão descontrolada ou consumo excessivo de recursos. Esses problemas resultam de validação insuficiente e da falta de mecanismos de segurança, como detecção de ciclos, limites de recursão ou manipulação defensiva de estados inesperados, ao processar dados de repositório e estruturas de sistema de arquivos não confiáveis.
Recomendações Atualize para uma versão suportada do go-billy v5 ou posterior.

Exploit

Correção

Infinite Loop

Uncontrolled Recursion

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALSA-2026:46391
CLEANSTART-2026-AQ65185
CLEANSTART-2026-BG69533
CLEANSTART-2026-BP02821
CLEANSTART-2026-CP15003
CLEANSTART-2026-DM19620
CLEANSTART-2026-EH36582
CLEANSTART-2026-ES72297
CLEANSTART-2026-HO16255
CLEANSTART-2026-JW97006
CLEANSTART-2026-KL41807
CLEANSTART-2026-KQ90880
CLEANSTART-2026-MY68881
CLEANSTART-2026-OS93204
CLEANSTART-2026-QP84300
CLEANSTART-2026-QT53274
CLEANSTART-2026-UY49411
CLEANSTART-2026-VD47610
CLEANSTART-2026-WF25734
CLEANSTART-2026-WY21381
CLEANSTART-2026-YF30779
CVE-2026-44740
GHSA-M3XC-H892-GGX6
GO-2026-5490
OPENSUSE-SU-2026:10856-1
OPENSUSE-SU-2026:10941-1
OPENSUSE-SU-2026:10943-1
OPENSUSE-SU-2026:10967-1
OPENSUSE-SU-2026:10996-1
OPENSUSE-SU-2026:11053-1
OPENSUSE-SU-2026:20956-1
OPENSUSE-SU-2026:21072-1
OPENSUSE-SU-2026:21079-1
OPENSUSE-SU-2026:21251-1
OPENSUSE-SU-2026:21436-1
OPENSUSE-SU-2026:21551-1
RHSA-2026:32963
RHSA-2026:32974
RHSA-2026:35111
RHSA-2026:46391
SUSE-SU-2026:22157-1
SUSE-SU-2026:22575-1
SUSE-SU-2026:23216-1
SUSE-SU-2026:23227-1
SUSE-SU-2026:2467-1
SUSE-SU-2026:2468-1
SUSE-SU-2026:2824-1
SUSE-SU-2026:3056-1

Produtos afetados

Rocky Linux
Go-Billy