Information on source package golang-go.crypto

Available versions

ReleaseVersion
jessie0.0~hg190-1+deb8u2
stretch1:0.0~git20170407.0.55a552f+REALLY.0.0~git20161012.0.5f31782-1+deb8u1
buster1:0.0~git20181203.505ab14-1
bullseye1:0.0~git20201221.eec23a3-1
bookworm1:0.0~git20220829.c86fa9a-1
sid1:0.0~git20220829.c86fa9a-1

Open issues

BugjessiestretchbusterbullseyebookwormsidDescription
CVE-2022-27191vulnerablevulnerablevulnerable (no DSA, postponed)vulnerablefixedfixedThe golang.org/x/crypto/ssh package before 0.0.0-20220314234659-1baeb1 ...
CVE-2021-43565vulnerablevulnerable (no DSA, postponed)vulnerable (no DSA, postponed)vulnerablefixedfixedThe x/crypto/ssh package before 0.0.0-20211202192323-5770296d904e of g ...
CVE-2020-29652vulnerablefixedfixedfixedfixedfixedA nil pointer dereference in the golang.org/x/crypto/ssh component thr ...
CVE-2020-9283vulnerable (no DSA)fixedvulnerable (no DSA, postponed)fixedfixedfixedgolang.org/x/crypto before v0.0.0-20200220183623-bac4c82f6975 for Go a ...
CVE-2019-11841fixedfixedvulnerable (no DSA, postponed)fixedfixedfixedA message-forgery issue was discovered in crypto/openpgp/clearsign/cle ...
CVE-2019-11840fixedfixedvulnerable (no DSA, postponed)fixedfixedfixedAn issue was discovered in supplementary Go cryptography libraries, ak ...
CVE-2017-3204vulnerable (no DSA, ignored)fixedfixedfixedfixedfixedThe Go SSH library (x/crypto/ssh) by default does not verify host keys ...

Security announcements

DSA / DLADescription
DLA-2402-1golang-go.crypto - security update
DLA-1920-1golang-go.crypto - security update
DLA-1840-1golang-go.crypto - security update

Search for package or bug name: Reporting problems