Skip to content

Include offsetgen case in http2_trace_bpf_test

345dddc
Select commit
Loading
Failed to load commit list.
Draft

Integrate GoOffsetLocator in socket tracer #2212

Include offsetgen case in http2_trace_bpf_test
345dddc
Select commit
Loading
Failed to load commit list.
GitHub Advanced Security / trivy-fs failed Jun 9, 2025 in 3s

2 new alerts including 1 high severity security vulnerability

New alerts in code changed by this pull request

Security Alerts:

  • 1 high
  • 1 medium

Alerts not introduced by this pull request might have been detected because the code changes were too large.

See annotations below for details.

View all branch alerts.

Annotations

Check failure on line 1 in src/stirling/testing/demo_apps/go_grpc_tls_pl/server/mod_info/go.mod

See this annotation in the file changed.

Code scanning / trivy-fs

gRPC-Go HTTP/2 Rapid Reset vulnerability High test

Package: google.golang.org/grpc
Installed Version: v1.43.0
Vulnerability GHSA-m425-mq94-257g
Severity: HIGH
Fixed Version: 1.56.3, 1.57.1, 1.58.3
Link: GHSA-m425-mq94-257g

Check warning on line 1 in src/stirling/testing/demo_apps/go_grpc_tls_pl/server/mod_info/go.mod

See this annotation in the file changed.

Code scanning / trivy-fs

HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack) Medium test

Package: google.golang.org/grpc
Installed Version: v1.43.0
Vulnerability CVE-2023-44487
Severity: MEDIUM
Fixed Version: 1.58.3, 1.57.1, 1.56.3
Link: CVE-2023-44487