Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2024-24789
Description:The archive/zip package's handling of certain types of invalid zip files differs from the behavior of most zip implementations. This misalignment could be exploited to create an zip file with contents that vary depending on the implementation reading the file. The archive/zip package now rejects files containing these errors.
Test IDs: 1.3.6.1.4.1.25623.1.1.2.2024.2528   1.3.6.1.4.1.25623.1.1.2.2024.2100   1.3.6.1.4.1.25623.1.1.2.2024.2504   1.3.6.1.4.1.25623.1.1.2.2024.2414   1.3.6.1.4.1.25623.1.1.2.2024.2437   1.3.6.1.4.1.25623.1.1.2.2024.2391   1.3.6.1.4.1.25623.1.0.887364   1.3.6.1.4.1.25623.1.1.9.2024.410024786142   1.3.6.1.4.1.25623.1.1.9.2024.41029979910099194   1.3.6.1.4.1.25623.1.0.887247   1.3.6.1.4.1.25623.1.1.2.2024.2366   1.3.6.1.4.1.25623.1.1.2.2024.2083   1.3.6.1.4.1.25623.1.0.887360  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2024-24789
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/U5YAEIA6IUHUNGJ7AIXXPQT6D2GYENX7/
https://go.dev/cl/585397
https://go.dev/cl/585397
https://go.dev/issue/66869
https://go.dev/issue/66869
https://groups.google.com/g/golang-announce/c/XbxouI9gY7k/m/TuoGEhxIEwAJ
https://groups.google.com/g/golang-announce/c/XbxouI9gY7k/m/TuoGEhxIEwAJ
https://pkg.go.dev/vuln/GO-2024-2888
https://pkg.go.dev/vuln/GO-2024-2888
http://www.openwall.com/lists/oss-security/2024/06/04/1




© 1998-2025 E-Soft Inc. All rights reserved.