Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2021-34558

EPSS 0.92% · P76
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2021-34558

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The crypto/tls package of Go through 1.16.5 does not properly assert that the type of public key in an X.509 certificate matches the expected type when doing a RSA based key exchange, allowing a malicious TLS server to cause a TLS client to panic.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Google Golang 信任管理问题漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Google Golang是美国谷歌(Google)公司的一种静态强类型、编译型语言。Go的语法接近C语言,但对于变量的声明有所不同。Go支持垃圾回收功能。Go的并行模型是以东尼·霍尔的通信顺序进程(CSP)为基础,采取类似模型的其他语言包括Occam和Limbo,但它也具有Pi运算的特征,比如通道传输。在1.8版本中开放插件(Plugin)的支持,这意味着现在能从Go中动态加载部分函数。 Golang through 1.16.5 存在信任管理问题漏洞,该漏洞源于在进行基于 RSA 的密钥交换时,cry
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2021-34558

#POC DescriptionSource LinkShenlong Link
1Nonehttps://github.com/alexzorin/cve-2021-34558POC Details
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2021-34558

登录查看更多情报信息。

Same Patch Batch · n/a · 2021-07-15 · 30 CVEs total

CVE-2020-12734DEPSTECH WiFi Digital Microscope 安全漏洞
CVE-2020-25736Acronis True Image 安全漏洞
CVE-2021-33505Falco 安全漏洞
CVE-2021-34687iDrive RemotePC 加密问题漏洞
CVE-2021-34688iDrive RemotePC 信任管理问题漏洞
CVE-2021-34689IDrive 日志信息泄露漏洞
CVE-2021-34690IDrive 授权问题漏洞
CVE-2021-34691IDrive 安全漏洞
CVE-2021-34692Idrive IDrive 安全漏洞
CVE-2020-15496Acronis True Image 安全漏洞
CVE-2020-25593Acronis True Image 安全漏洞
CVE-2020-15495Acronis True Image 安全漏洞
CVE-2020-12731MagicMotion Flamingo 安全漏洞
CVE-2020-12730MagicMotion Flamingo 安全漏洞
CVE-2020-12729MagicMotion Flamingo 信息泄露漏洞
CVE-2021-36758AgileBits 1Password 访问控制错误漏洞
CVE-2020-12733DEPSTECH WiFi Digital Microscope 安全漏洞
CVE-2020-12732DEPSTECH WiFi Digital Microscope 安全漏洞
CVE-2021-27847Libvips 数字错误漏洞
CVE-2021-27845JasPer 数字错误漏洞

Showing top 20 of 30 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2021-34558

No comments yet


Leave a comment