GHSA-jhj6-5mh6-4pvf
Dashboard / Vulnerabilities / GHSA-jhj6-5mh6-4pvf
GHSA-jhj6-5mh6-4pvf
Summary: Denial-of-Service within Docker container
Details: ### Impact If you run teler inside a Docker container and encounter `errors.Exit` function, it will cause denial-of-service (`SIGSEGV`) because it doesn't get process ID and process group ID of teler properly to kills. ### Specific Go Packages Affected ktbs.dev/teler/pkg/errors ### Patches Upgrade to the >= 0.0.1 version. ### Workarounds N/A ### References - https://github.com/kitabisa/teler/commit/ec6082049dba9e44a21f35fb7b123d42ce1a1a7e ### For more information If you have any questions or comments about this advisory: * Open an issue in [Issues Section](https://github.com/kitabisa/teler/issues) * Email us at [[email protected]](mailto:[email protected])
References: https://github.com/kitabisa/teler/security/advisories/GHSA-jhj6-5mh6-4pvf, https://nvd.nist.gov/vuln/detail/CVE-2020-26213, https://github.com/kitabisa/teler/commit/ec6082049dba9e44a21f35fb7b123d42ce1a1a7e, https://github.com/kitabisa/teler
Affected packages
Package
Name: ktbs.dev/teler
Purl: pkg:golang/ktbs.dev/teler
Affected ranges
Type: SEMVER
Events:
