Known Vulnerabilities for Go-attestation by Google
Listed below are 1 of the newest known vulnerabilities associated with "Go-attestation" by "Google".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-48501 json | GitHub CLI (gh) is GitHub’s official command line tool. Prior to 2.93.0, GitHub CLI incorrectly includes authorization head... | Not Provided | 2026-05-29 | 2026-05-29 |
| CVE-2026-45642 json | Improper input validation in Microsoft Azure Attestation service and Device Health Attestation Service allows an authorized a... | Not Provided | 2026-06-09 | 2026-07-15 |
| CVE-2026-45328 json | ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.5.4 and 6.0, the esp_tee component exp... | Not Provided | 2026-06-10 | 2026-06-10 |
| CVE-2026-43240 json | In the Linux kernel, the following vulnerability has been resolved: x86/kexec: add a sanity check on previous kernel's ima k... | Not Provided | 2026-05-06 | 2026-06-19 |
| CVE-2026-33828 json | Trust boundary violation in Windows Attestation allows an authorized attacker to elevate privileges locally. | Not Provided | 2026-06-09 | 2026-07-15 |
| CVE-2026-31470 json | In the Linux kernel, the following vulnerability has been resolved: virt: tdx-guest: Fix handling of host controlled 'quote'... | Not Provided | 2026-04-22 | 2026-04-27 |
| CVE-2026-12681 json | Improper Validation of Specified Index, Position, or Offset in Input vulnerability in Google go-attestation. parseEfiSignatur... | Not Provided | 2026-06-24 | 2026-06-24 |
| CVE-2026-6420 json | A flaw was found in Keylime. An attacker with root access on an enrolled monitored machine, where the Keylime agent runs, can... | Not Provided | 2026-05-06 | 2026-06-24 |
| CVE-2025-1057 json | A flaw was found in Keylime, a remote attestation solution, where strict type checking introduced in version 7.12.0 prevents ... | Not Provided | 2025-03-15 | 2026-06-29 |
| CVE-2022-0317 json | An improper input validation vulnerability in go-attestation before 0.3.3 allows local users to provide a maliciously-formed ... | 3.3 - LOW | 2022-02-04 | 2022-02-09 |