Weaknesses in the generation of TCP/UDP source ports and some other header values in Google's gVisor allowed them to be predicted by an external attacker in some circumstances.
{ "binaries": [ { "binary_version": "0.0~git20211120.8aa80cf2-5", "binary_name": "golang-inet-netstack-dev" } ] }
{ "binaries": [ { "binary_version": "0.0~20230807.0-4ubuntu0.24.04.3", "binary_name": "golang-gvisor-gvisor-dev" }, { "binary_version": "0.0~20230807.0-4ubuntu0.24.04.3", "binary_name": "runsc" } ] }
{ "binaries": [ { "binary_version": "0.0~git20211120.8aa80cf2-6", "binary_name": "golang-inet-netstack-dev" } ] }
{ "binaries": [ { "binary_version": "0.0~20240729.0-4", "binary_name": "golang-gvisor-gvisor-dev" }, { "binary_version": "0.0~20240729.0-4", "binary_name": "runsc" } ] }