docker.io/fosrl/newt:latest linux/arm64

docker.io/fosrl/newt:latest - Trivy安全扫描结果 扫描时间: 2026-09-09 10:37 温馨提示: 这是一个 linux/arm64 系统架构镜像
全部漏洞信息
低危漏洞:12 中危漏洞:6 高危漏洞:5 严重漏洞:1

系统OS: alpine 3.23.5 扫描引擎: Trivy 扫描时间: 2026-09-09 10:37

docker.io/fosrl/newt:latest (alpine 3.23.5) (alpine)
低危漏洞:12 中危漏洞:6 高危漏洞:2 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
libcrypto3 CVE-2026-14456 高危 3.5.7-r0 3.5.8-r0 openssl: OpenSSL: Denial of Service via unbounded memory growth in QUIC server

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-14456

镜像层: sha256:91d5cf66444f05b8c72e1b9d725c1752b9b015b68a7918125fc46ecdb7cc46d5

发布日期: 2026-08-13 15:19 修改: 2026-08-28 19:46

libssl3 CVE-2026-14456 高危 3.5.7-r0 3.5.8-r0 openssl: OpenSSL: Denial of Service via unbounded memory growth in QUIC server

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-14456

镜像层: sha256:91d5cf66444f05b8c72e1b9d725c1752b9b015b68a7918125fc46ecdb7cc46d5

发布日期: 2026-08-13 15:19 修改: 2026-08-28 19:46

libcrypto3 CVE-2026-63072 中危 3.5.7-r0 3.5.8-r0 openssl: heap buffer overflow in CMS key unwrapping

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63072

镜像层: sha256:91d5cf66444f05b8c72e1b9d725c1752b9b015b68a7918125fc46ecdb7cc46d5

发布日期: 2026-08-25 13:19 修改: 2026-08-28 19:46

libcrypto3 CVE-2026-63076 中危 3.5.7-r0 3.5.8-r0 openssl: invalid pointer dereference in CMP server via crafted protectionAlg

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63076

镜像层: sha256:91d5cf66444f05b8c72e1b9d725c1752b9b015b68a7918125fc46ecdb7cc46d5

发布日期: 2026-08-25 13:19 修改: 2026-08-28 19:46

libcrypto3 CVE-2026-18798 中危 3.5.7-r0 3.5.8-r0 openssl: QUIC server may trigger double free when processing INITIAL packet

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-18798

镜像层: sha256:91d5cf66444f05b8c72e1b9d725c1752b9b015b68a7918125fc46ecdb7cc46d5

发布日期: 2026-08-25 13:17 修改: 2026-08-28 19:46

libssl3 CVE-2026-18798 中危 3.5.7-r0 3.5.8-r0 openssl: QUIC server may trigger double free when processing INITIAL packet

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-18798

镜像层: sha256:91d5cf66444f05b8c72e1b9d725c1752b9b015b68a7918125fc46ecdb7cc46d5

发布日期: 2026-08-25 13:17 修改: 2026-08-28 19:46

libssl3 CVE-2026-63072 中危 3.5.7-r0 3.5.8-r0 openssl: heap buffer overflow in CMS key unwrapping

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63072

镜像层: sha256:91d5cf66444f05b8c72e1b9d725c1752b9b015b68a7918125fc46ecdb7cc46d5

发布日期: 2026-08-25 13:19 修改: 2026-08-28 19:46

libssl3 CVE-2026-63076 中危 3.5.7-r0 3.5.8-r0 openssl: invalid pointer dereference in CMP server via crafted protectionAlg

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63076

镜像层: sha256:91d5cf66444f05b8c72e1b9d725c1752b9b015b68a7918125fc46ecdb7cc46d5

发布日期: 2026-08-25 13:19 修改: 2026-08-28 19:46

libcrypto3 CVE-2026-63075 低危 3.5.7-r0 3.5.8-r0 openssl: QUIC ACK-only packet retention can cause memory exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63075

镜像层: sha256:91d5cf66444f05b8c72e1b9d725c1752b9b015b68a7918125fc46ecdb7cc46d5

发布日期: 2026-08-25 13:19 修改: 2026-08-28 19:46

libcrypto3 CVE-2026-75803 低危 3.5.7-r0 3.5.8-r0 Issue summary: ChaCha20-Poly1305 and AES-OCB decryption with an empty ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-75803

镜像层: sha256:91d5cf66444f05b8c72e1b9d725c1752b9b015b68a7918125fc46ecdb7cc46d5

发布日期: 2026-08-25 13:19 修改: 2026-09-01 19:17

libcrypto3 CVE-2026-14457 低危 3.5.7-r0 3.5.8-r0 openssl: RPK server signature algorithm selection can dereference a missing certificate

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-14457

镜像层: sha256:91d5cf66444f05b8c72e1b9d725c1752b9b015b68a7918125fc46ecdb7cc46d5

发布日期: 2026-08-25 13:17 修改: 2026-08-28 19:46

libcrypto3 CVE-2026-54874 低危 3.5.7-r0 3.5.8-r0 openssl: excessive memory use buffering DTLS records for a future epoch

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-54874

镜像层: sha256:91d5cf66444f05b8c72e1b9d725c1752b9b015b68a7918125fc46ecdb7cc46d5

发布日期: 2026-08-25 13:19 修改: 2026-08-28 19:46

libcrypto3 CVE-2026-63073 低危 3.5.7-r0 3.5.8-r0 openssl: untrusted sender DN used as format string in CMP response validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63073

镜像层: sha256:91d5cf66444f05b8c72e1b9d725c1752b9b015b68a7918125fc46ecdb7cc46d5

发布日期: 2026-08-25 13:19 修改: 2026-08-31 20:17

libcrypto3 CVE-2026-63074 低危 3.5.7-r0 3.5.8-r0 openssl: CMP indefinite cache growth of ExtraCerts

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63074

镜像层: sha256:91d5cf66444f05b8c72e1b9d725c1752b9b015b68a7918125fc46ecdb7cc46d5

发布日期: 2026-08-25 13:19 修改: 2026-08-28 19:46

libssl3 CVE-2026-14457 低危 3.5.7-r0 3.5.8-r0 openssl: RPK server signature algorithm selection can dereference a missing certificate

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-14457

镜像层: sha256:91d5cf66444f05b8c72e1b9d725c1752b9b015b68a7918125fc46ecdb7cc46d5

发布日期: 2026-08-25 13:17 修改: 2026-08-28 19:46

libssl3 CVE-2026-54874 低危 3.5.7-r0 3.5.8-r0 openssl: excessive memory use buffering DTLS records for a future epoch

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-54874

镜像层: sha256:91d5cf66444f05b8c72e1b9d725c1752b9b015b68a7918125fc46ecdb7cc46d5

发布日期: 2026-08-25 13:19 修改: 2026-08-28 19:46

libssl3 CVE-2026-63073 低危 3.5.7-r0 3.5.8-r0 openssl: untrusted sender DN used as format string in CMP response validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63073

镜像层: sha256:91d5cf66444f05b8c72e1b9d725c1752b9b015b68a7918125fc46ecdb7cc46d5

发布日期: 2026-08-25 13:19 修改: 2026-08-31 20:17

libssl3 CVE-2026-63074 低危 3.5.7-r0 3.5.8-r0 openssl: CMP indefinite cache growth of ExtraCerts

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63074

镜像层: sha256:91d5cf66444f05b8c72e1b9d725c1752b9b015b68a7918125fc46ecdb7cc46d5

发布日期: 2026-08-25 13:19 修改: 2026-08-28 19:46

libssl3 CVE-2026-63075 低危 3.5.7-r0 3.5.8-r0 openssl: QUIC ACK-only packet retention can cause memory exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63075

镜像层: sha256:91d5cf66444f05b8c72e1b9d725c1752b9b015b68a7918125fc46ecdb7cc46d5

发布日期: 2026-08-25 13:19 修改: 2026-08-28 19:46

libssl3 CVE-2026-75803 低危 3.5.7-r0 3.5.8-r0 Issue summary: ChaCha20-Poly1305 and AES-OCB decryption with an empty ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-75803

镜像层: sha256:91d5cf66444f05b8c72e1b9d725c1752b9b015b68a7918125fc46ecdb7cc46d5

发布日期: 2026-08-25 13:19 修改: 2026-09-01 19:17

usr/local/bin/newt (gobinary)
低危漏洞:0 中危漏洞:0 高危漏洞:3 严重漏洞:1
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
golang.org/x/crypto CVE-2026-56854 严重 v0.53.0 0.55.0 golang.org/x/crypto/ssh: golang.org/x/crypto/ssh: Authentication bypass due to unenforced source-address restrictions

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-56854

镜像层: sha256:3d1d51134869bed253b626a4bab239e4868a8f96c9ef22f6d140bbd1d1f7e2a7

发布日期: 2026-08-28 16:18 修改: 2026-09-03 16:37

golang.org/x/text CVE-2026-56852 高危 v0.38.0 0.39.0 golang.org/x/text: golang.org/x/text: Denial of Service via invalid UTF-8 input

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-56852

镜像层: sha256:3d1d51134869bed253b626a4bab239e4868a8f96c9ef22f6d140bbd1d1f7e2a7

发布日期: 2026-07-21 20:17 修改: 2026-07-23 18:27

google.golang.org/grpc CVE-2026-84304 高危 v1.82.0 1.83.1 gRPC-Go is the Go language implementation of gRPC. Prior to 1.83.1, in ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-84304

镜像层: sha256:3d1d51134869bed253b626a4bab239e4868a8f96c9ef22f6d140bbd1d1f7e2a7

发布日期: 2026-09-01 19:17 修改: 2026-09-01 20:17

google.golang.org/grpc GHSA-hrxh-6v49-42gf 高危 v1.82.0 1.82.1 gRPC-Go: xDS RBAC and HTTP/2 Vulnerabilities

漏洞详情: https://github.com/advisories/GHSA-hrxh-6v49-42gf

镜像层: sha256:3d1d51134869bed253b626a4bab239e4868a8f96c9ef22f6d140bbd1d1f7e2a7

发布日期: 2026-07-21 22:03 修改: 2026-07-21 22:03

golang.org/x/crypto CVE-2026-56855 未知 v0.53.0 0.56.0 Previously, after a channel has been established, a malicious peer cou ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-56855

镜像层: sha256:3d1d51134869bed253b626a4bab239e4868a8f96c9ef22f6d140bbd1d1f7e2a7

发布日期: 2026-09-02 20:17 修改: 2026-09-04 16:34

golang.org/x/crypto CVE-2026-78662 未知 v0.53.0 0.56.0 Previously, a channel registered in the mux's chanList is not usable u ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-78662

镜像层: sha256:3d1d51134869bed253b626a4bab239e4868a8f96c9ef22f6d140bbd1d1f7e2a7

发布日期: 2026-09-02 20:17 修改: 2026-09-04 16:33

golang.org/x/crypto GO-2026-5932 未知 v0.53.0 The golang.org/x/crypto/openpgp package is unmaintained, unsafe by design, and has known security issues

漏洞详情:

镜像层: sha256:3d1d51134869bed253b626a4bab239e4868a8f96c9ef22f6d140bbd1d1f7e2a7

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

检测到您正在使用广告拦截插件,本站为公益站点,依赖广告维持运转 🙏 查看如何关闭 ×