Vulnerability Database
Blog
FAQ
Docs
GO-2024-2667
Source
https://pkg.go.dev/vuln/GO-2024-2667
Import Source
https://vuln.go.dev/ID/GO-2024-2667.json
Aliases
BIT-argo-cd-2024-29893
CVE-2024-29893
GHSA-jhwx-mhww-rgc3
Published
2024-04-16T18:16:39Z
Modified
2024-04-16T18:41:52.073804Z
Details
Out of memory crash from malicious Helm registry in github.com/argoproj/argo-cd/v2
References
https://github.com/argoproj/argo-cd/security/advisories/GHSA-jhwx-mhww-rgc3
Affected packages
Go
/
github.com/argoproj/argo-cd/v2
Package
Name
github.com/argoproj/argo-cd/v2
Affected ranges
Type
SEMVER
Events
Introduced
2.4.0
Fixed
2.8.14
Introduced
2.9.0
Fixed
2.9.10
Introduced
2.10.0
Fixed
2.10.5
GO-2024-2667 - OSV