Automatically generated suggestions
Dismiss to remove a suggestion from the queue.
created 1 year, 1 month ago
Crafted responses can lead to a denial of service due to cache inefficiencies in the Recursor
An attacker can publish a zone containing specific Resource Record Sets.
Repeatedly processing and caching results for these sets can lead to a
denial of service.
Matching in nixpkgs
pkgs. pdns-recursor
Recursive DNS server
created 1 year, 1 month ago
Denial of Service through Data corruption in gRPC-C++
There exists a denial of service through Data corruption in gRPC-C++ - gRPC-C++ servers with transmit zero copy enabled through the channel arg GRPC_ARG_TCP_TX_ZEROCOPY_ENABLED can experience data corruption issues. The data sent by the application may be corrupted before transmission over the network thus leading the receiver to receive an incorrect set of bytes causing RPC requests to fail. We recommend upgrading past commit e9046b2bbebc0cb7f5dc42008f807f6c7e98e791
Matching in nixpkgs
pkgs. grpc
C based gRPC (C++, Python, Ruby, Objective-C, PHP, C#)
pkgs. grpcui
Interactive web UI for gRPC, along the lines of postman
pkgs. grpcurl
Like cURL, but for gRPC: Command-line tool for interacting with gRPC servers
pkgs. grpc_cli
Command line tool for interacting with grpc services
pkgs. grpc-gateway
A gRPC to JSON proxy generator plugin for Google Protocol Buffers
pkgs. grpc-client-cli
generic gRPC command line client
pkgs. grpc-health-check
Minimal, high performance, memory-friendly, safe implementation of the gRPC health checking protocol
pkgs. kdePackages.qtgrpc
Cross-platform application framework for C++
pkgs. protoc-gen-entgrpc
Generator of an implementation of the service interface for ent protobuff
pkgs. protoc-gen-go-grpc
Go language implementation of gRPC. HTTP/2 based RPC
pkgs. qt6Packages.qtgrpc
Cross-platform application framework for C++
pkgs. protoc-gen-grpc-web
gRPC web support for Google's protocol buffers
pkgs. php81Extensions.grpc
High performance, open source, general RPC framework that puts mobile and HTTP/2 first
pkgs. php82Extensions.grpc
High performance, open source, general RPC framework that puts mobile and HTTP/2 first
pkgs. php83Extensions.grpc
High performance, open source, general RPC framework that puts mobile and HTTP/2 first
pkgs. php84Extensions.grpc
High performance, open source, general RPC framework that puts mobile and HTTP/2 first
pkgs. protoc-gen-rust-grpc
Protobuf plugin for generating Rust code for gRPC
pkgs. python311Packages.grpcio
HTTP/2-based RPC framework
pkgs. python312Packages.grpcio
HTTP/2-based RPC framework
pkgs. python311Packages.grpclib
Pure-Python gRPC implementation for asyncio
pkgs. python312Packages.grpclib
Pure-Python gRPC implementation for asyncio
pkgs. python311Packages.grpcio-gcp
gRPC extensions for Google Cloud Platform
pkgs. python312Packages.grpcio-gcp
gRPC extensions for Google Cloud Platform
pkgs. python311Packages.pytest-grpc
pytest plugin for grpc
pkgs. python312Packages.pytest-grpc
pytest plugin for grpc
pkgs. python311Packages.clarifai-grpc
Clarifai gRPC API Client
pkgs. python311Packages.grpcio-status
GRPC Python status proto mapping
pkgs. python312Packages.clarifai-grpc
Clarifai gRPC API Client
pkgs. python312Packages.grpcio-status
GRPC Python status proto mapping
pkgs. python311Packages.grpcio-testing
Testing utilities for gRPC Python
pkgs. python312Packages.grpcio-testing
Testing utilities for gRPC Python
pkgs. python311Packages.grpcio-channelz
Channel Level Live Debug Information Service for gRPC
pkgs. python312Packages.grpcio-channelz
Channel Level Live Debug Information Service for gRPC
pkgs. python311Packages.grpc-interceptor
Simplified gRPC interceptors
pkgs. python312Packages.grpc-interceptor
Simplified gRPC interceptors
pkgs. python311Packages.grpcio-reflection
Standard Protobuf Reflection Service for gRPC
pkgs. python312Packages.grpcio-reflection
Standard Protobuf Reflection Service for gRPC
pkgs. python311Packages.grpc-google-iam-v1
GRPC library for the google-iam-v1 service
pkgs. python312Packages.grpc-google-iam-v1
GRPC library for the google-iam-v1 service
pkgs. python311Packages.grpcio-health-checking
Standard Health Checking Service for gRPC
pkgs. python312Packages.grpcio-health-checking
Standard Health Checking Service for gRPC
pkgs. python311Packages.opentelemetry-instrumentation-grpc
OpenTelemetry Instrumentation for grpc
pkgs. python312Packages.opentelemetry-instrumentation-grpc
OpenTelemetry Instrumentation for grpc
pkgs. python311Packages.opentelemetry-exporter-otlp-proto-grpc
OpenTelemetry Collector Protobuf over gRPC Exporter
pkgs. python312Packages.opentelemetry-exporter-otlp-proto-grpc
OpenTelemetry Collector Protobuf over gRPC Exporter
created 1 year, 1 month ago
Pam: libpam: libpam vulnerable to read hashed password
A vulnerability was found in PAM. The secret information is stored in memory, where the attacker can trigger the victim program to execute by sending characters to its standard input (stdin). As this occurs, the attacker can train the branch predictor to execute an ROP chain speculatively. This flaw could result in leaked passwords, such as those found in /etc/shadow while performing authentications.
Matching in nixpkgs
pkgs. pam
Pluggable Authentication Modules, a flexible mechanism for authenticating user
pkgs. ipam
Cli based IPAM written in Go with PowerDNS support
pkgs. opam
Package manager for OCaml
pkgs. paml
Phylogenetic Analysis by Maximum Likelihood (PAML)
pkgs. dspam
Community Driven Antispam Filter
pkgs. pamix
Pulseaudio terminal mixer
nixpkgs-unstable
1.6
nixos-unstable-small
1.6
pkgs. rspamd
Advanced spam filtering system
pkgs. openpam
Open source PAM library that focuses on simplicity, correctness, and cleanliness
pkgs. pam_p11
Authentication with PKCS#11 modules
pkgs. pam_u2f
PAM module for allowing authentication with a U2F device
pkgs. pamixer
Pulseaudio command line mixer
nixpkgs-unstable
1.6
nixos-unstable-small
1.6
pkgs. dopamine
Audio player that keeps it simple
pkgs. pam_krb5
PAM module allowing PAM-aware applications to authenticate users by performing an AS exchange with a Kerberos KDC
pkgs. pam_ldap
LDAP backend for PAM
nixpkgs-unstable
186
nixos-unstable-small
186
pkgs. pam_ussh
PAM module to authenticate using SSH certificates
pkgs. linux-pam
Pluggable Authentication Modules, a flexible mechanism for authenticating user
pkgs. ncpamixer
Terminal mixer for PulseAudio inspired by pavucontrol
pkgs. opam2json
convert opam file syntax to JSON
nixpkgs-unstable
0.4
nixos-unstable-small
0.4
pkgs. pam_dp9ik
dp9ik pam module
pkgs. pam_gnupg
Unlock GnuPG keys on login
nixpkgs-unstable
0.4
nixos-unstable-small
0.4
pkgs. pam_mount
PAM module to mount volumes for a user session
nixpkgs-unstable
2.20
nixos-unstable-small
2.20
pkgs. pam_mysql
PAM authentication module against a MySQL database
pkgs. pam_pgsql
Support to authenticate against PostgreSQL for PAM-enabled appliations
pkgs. pamtester
Utility program to test the PAM facility
pkgs. pam_ccreds
PAM module to locally authenticate using an enterprise identity when the network is unavailable
nixpkgs-unstable
10
nixos-unstable-small
10
pkgs. pam_mktemp
PAM for login service to provide per-user private directories
pkgs. pam_tmpdir
PAM module for creating safe per-user temporary directories
nixpkgs-unstable
0.09
nixos-unstable-small
0.09
pkgs. yubico-pam
Yubico PAM module
nixpkgs-unstable
2.27
nixos-unstable-small
2.27
pkgs. xtrlock-pam
PAM based X11 screen locker
pkgs. apparmor-pam
Mandatory access control system - PAM service
pkgs. opam-publish
Tool to ease contributions to opam repositories
pkgs. pam-reattach
Reattach to the user's GUI session on macOS during authentication (for Touch ID support in tmux)
nixpkgs-unstable
1.3
nixos-unstable-small
1.3
pkgs. spamassassin
Open-Source Spam Filter
pkgs. nss_pam_ldapd
LDAP identity and authentication for NSS/PAM
pkgs. libpam-wrapper
Wrapper for testing PAM modules
pkgs. opam-installer
Handle (un)installation from opam install files
pkgs. pam-honeycreds
PAM module that sends warnings when fake passwords are used
nixpkgs-unstable
1.9
nixos-unstable-small
1.9
pkgs. rspamd-trainer
Grabs messages from a spam mailbox via IMAP and feeds them to Rspamd for training
pkgs. emacsPackages.opam
None
pkgs. pam_ssh_agent_auth
PAM module for authentication through the SSH agent
pkgs. rubyPackages.rpam2
None
pkgs. haskellPackages.pam
Haskell binding for C PAM API
pkgs. luaPackages.lua-pam
Lua module for PAM authentication
pkgs. google-authenticator
Two-step verification, with pam module
nixpkgs-unstable
1.10
nixos-unstable-small
1.10
pkgs. emacsPackages.no-spam
None
pkgs. lua51Packages.lua-pam
Lua module for PAM authentication
pkgs. lua52Packages.lua-pam
Lua module for PAM authentication
pkgs. lua53Packages.lua-pam
Lua module for PAM authentication
pkgs. emacsPackages.pamparam
None
pkgs. libsForQt5.kwallet-pam
None
pkgs. rubyPackages_3_1.rpam2
None
pkgs. rubyPackages_3_2.rpam2
None
pkgs. rubyPackages_3_3.rpam2
None
pkgs. rubyPackages_3_4.rpam2
None
pkgs. kdePackages.kwallet-pam
PAM Integration with KWallet - Unlock KWallet when you login
pkgs. opensmtpd-filter-rspamd
OpenSMTPD filter integration for the Rspamd daemon
pkgs. python311Packages.pamqp
RabbitMQ Focused AMQP low-level library
pkgs. python312Packages.pamqp
RabbitMQ Focused AMQP low-level library
pkgs. sbclPackages.cl-xmlspam
None
pkgs. python311Packages.pamela
PAM interface using ctypes
pkgs. python312Packages.pamela
PAM interface using ctypes
pkgs. plasma5Packages.kwallet-pam
None
pkgs. python311Packages.pypamtest
Wrapper for testing PAM modules
pkgs. python312Packages.pypamtest
Wrapper for testing PAM modules
pkgs. python311Packages.python-pam
Python pam module
pkgs. python312Packages.python-pam
Python pam module
pkgs. emacsPackages.opam-switch-mode
None
pkgs. matrix-synapse-plugins.matrix-synapse-pam
PAM auth provider for the Synapse Matrix server
pkgs. matrix-synapse-plugins.matrix-synapse-mjolnir-antispam
AntiSpam / Banlist plugin to be used with mjolnir
pkgs. vscode-extensions.fabiospampinato.vscode-open-in-github
VS Code extension to open the current project or file in github.com
created 1 year, 1 month ago
Keycloak: amount of attributes per object is not limited and it may lead to dos
A denial of service vulnerability was found in keycloak where the amount of attributes per object is not limited,an attacker by sending repeated HTTP requests could cause a resource exhaustion when the application send back rows with long attribute values.
Affected products
keycloak
rh-sso7-keycloak
Matching in nixpkgs
pkgs. keycloak
Identity and access management for modern applications and services