File tree 2 files changed +0
-19
lines changed
2 files changed +0
-19
lines changed Original file line number Diff line number Diff line change 10
10
"summary" : " Incorrect delegation lookups can make go-tuf download the wrong artifact in github.com/theupdateframework/go-tuf" ,
11
11
"details" : " Incorrect delegation lookups can make go-tuf download the wrong artifact in github.com/theupdateframework/go-tuf" ,
12
12
"affected" : [
13
- {
14
- "package" : {
15
- "name" : " github.com/theupdateframework/go-tuf" ,
16
- "ecosystem" : " Go"
17
- },
18
- "ranges" : [
19
- {
20
- "type" : " SEMVER" ,
21
- "events" : [
22
- {
23
- "introduced" : " 0"
24
- }
25
- ]
26
- }
27
- ],
28
- "ecosystem_specific" : {}
29
- },
30
13
{
31
14
"package" : {
32
15
"name" : " github.com/theupdateframework/go-tuf/v2" ,
Original file line number Diff line number Diff line change 1
1
id : GO-2024-3166
2
2
modules :
3
- - module : github.com/theupdateframework/go-tuf
4
- vulnerable_at : 0.7.0
5
3
- module : github.com/theupdateframework/go-tuf/v2
6
4
versions :
7
5
- fixed : 2.0.1
You can’t perform that action at this time.
0 commit comments