<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 09 Oct 2026 20:02:42 +0000</lastBuildDate>
    <item>
      <title>CVE-2024-24786 — Infinite loop in JSON unmarshaling in google.golang.org/protobuf</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2024-24786</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; google.golang.org/protobuf/encoding/protojson, google.golang.org/protobuf/internal/encoding/json&lt;/p&gt;
&lt;p&gt;The protojson.Unmarshal function can enter an infinite loop when unmarshaling certain forms of invalid JSON. This condition can occur when unmarshaling into a message which contains a google.protobuf.Any value, or when the UnmarshalOptions.DiscardUnknown option is set.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; google.golang.org/protobuf/encoding/protojson, google.golang.org/protobuf/internal/encoding/json&lt;/p&gt;
&lt;p&gt;The protojson.Unmarshal function can enter an infinite loop when unmarshaling certain forms of invalid JSON. This condition can occur when unmarshaling into a message which contains a google.protobuf.Any value, or when the UnmarshalOptions.DiscardUnknown option is set.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2024-24786</guid>
    </item>
    <item>
      <title>GHSA-f6x5-jh6r-wrfv — golang.org/x/crypto/ssh/agent vulnerable to panic if message is malformed due to out of bounds read</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-f6x5-jh6r-wrfv</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: golang.org/x/crypto&lt;/p&gt;
&lt;p&gt;SSH Agent servers do not validate the size of messages when processing new identity requests, which may cause the program to panic if the message is malformed due to an out of bounds read.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: golang.org/x/crypto&lt;/p&gt;
&lt;p&gt;SSH Agent servers do not validate the size of messages when processing new identity requests, which may cause the program to panic if the message is malformed due to an out of bounds read.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-f6x5-jh6r-wrfv</guid>
    </item>
  </channel>
</rss>
