Back to bug 2214960

Who When What Removed Added
Vipul Nair 2023-06-14 08:53:20 UTC CC aazores, abenaiss, abishop, alitke, amasferr, amctagga, aoconnor, augol, aveerama, bbaude, bdettelb, bniver, chazlett, dcadzow, dholler, dhughes, dkenigsb, dsimansk, dwalsh, dymurray, eaguilar, ebaron, eglynn, ellin, fdeutsch, flucifre, gmeno, gparvin, grafana-maint, ibolton, jcantril, jjoyce, jkang, jkoehler, jkurik, jligon, jmatthew, jmontleo, jnovy, joelsmith, jpallich, jshaughn, jwendell, kaycoth, lball, lgamliel, lhh, lmadsen, lsm5, matzew, mbenjamin, mboddu, mburns, mfilanov, mgarciac, mhackett, mheon, mkudlej, mmagr, mrunge, muagarwa, mwringe, nathans, nbecker, nboldt, njean, nobody, ocs-bugs, oramraz, owatkins, pahickey, periklis, pgrist, phoracek, pjindal, pthomas, rcernich, rfreiman, rgarg, rhos-maint, rhuss, rjohnson, scorneli, scox, sfroberg, sgott, shbose, skontopo, slucidi, smullick, sostapov, sseago, stcannon, stirabos, teagle, tjochec, tnielsen, tsweeney, twalsh, ubhargav, umohnani, vereddy, whayutin, ypadia
Vipul Nair 2023-06-14 08:55:23 UTC Summary CVE-2023-24535 Protobuf: panic when parsing an incomplete number CVE-2023-24535 gogo/Protobuf: panic when parsing an incomplete number
Vipul Nair 2023-06-14 08:58:51 UTC Summary CVE-2023-24535 gogo/Protobuf: panic when parsing an incomplete number CVE-2023-24535 golang/Protobuf: panic when parsing an incomplete number
TEJ RATHI 2023-06-15 05:52:50 UTC Blocks 2214923
Chess Hazlett 2023-06-16 20:37:38 UTC Fixed In Version protobuf 1.29.1
Anten Skrabec 2023-06-29 21:54:41 UTC CC abenaiss, alitke, amctagga, aoconnor, aveerama, bdettelb, bniver, dcadzow, dholler, dhughes, dkenigsb, dymurray, eglynn, ellin, fdeutsch, flucifre, gmeno, ibolton, jcantril, jjoyce, jkoehler, jmatthew, jmontleo, joelsmith, jshaughn, jwendell, lgamliel, lhh, lmadsen, mbenjamin, mburns, mfilanov, mgarciac, mhackett, muagarwa, mwringe, nbecker, nboldt, ocs-bugs, oramraz, periklis, pgrist, phoracek, rcernich, rfreiman, rgarg, rjohnson, scorneli, sgott, shbose, slucidi, smullick, sostapov, sseago, stirabos, tnielsen, twalsh, ubhargav, vereddy, whayutin, ypadia
Chess Hazlett 2023-06-30 19:52:06 UTC CC amasferr, mkudlej, tjochec
Chess Hazlett 2023-06-30 19:53:52 UTC CC amasferr, mkudlej, tjochec
Anten Skrabec 2023-07-03 19:30:45 UTC Doc Text A flaw was found in the golang implementation of the protobuf protocol where parsing a text-format message which contains a potential number consisting of a minus sign, one or more characters of whitespace, and no further input will cause a panic.
Product Security DevOps Team 2023-07-04 07:01:30 UTC Resolution --- NOTABUG
Status NEW CLOSED
Last Closed 2023-07-04 07:01:30 UTC
Paige Jung 2023-07-04 15:17:36 UTC Doc Text A flaw was found in the golang implementation of the protobuf protocol where parsing a text-format message which contains a potential number consisting of a minus sign, one or more characters of whitespace, and no further input will cause a panic. A flaw was found in the golang implementation of the protobuf protocol. This issue occurs when parsing a text-format message which contains a potential number consisting of a minus sign, one or more characters of whitespace, and no further input, which will cause a panic.

Back to bug 2214960