CVE-2024-24786
EUVD-2024-087905.03.2024, 23:15
The protojson.Unmarshal function can enter an infinite loop when unmarshaling certain forms of invalid JSON. This condition can occur when unmarshaling into a message which contains a google.protobuf.Any value, or when the UnmarshalOptions.DiscardUnknown option is set.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| golang | go | 𝑥 < 1.33.0 | ADP |
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| golang-google-protobuf |
| ||||||||||||||||||
| google-guest-agent |
| ||||||||||||||||||
| google-osconfig-agent |
|
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| buildah |
| ||||||||||||||||
| podman |
| ||||||||||||||||
| podman-docker |
| ||||||||||||||||
| podman-remote |
| ||||||||||||||||
| podmansh |
|
Red Hat Enterprise Linux Releases
Red Hat Product | |||
|---|---|---|---|
| buildah |
| ||
| buildah-tests |
| ||
| podman |
| ||
| podman-docker |
| ||
| podman-plugins |
| ||
| podman-remote |
| ||
| podman-tests |
| ||
| rhc-worker-script |
| ||
| skopeo |
| ||
| skopeo-tests |
|
References