{"id":"GO-2024-2977","summary":"IP addresses were encoded in the wrong byte order in github.com/google/nftables","details":"IP addresses were encoded in the wrong byte order, resulting in an nftables configuration which did not work as intended (might block or not block the desired addresses).","aliases":["CVE-2024-6284","GHSA-qjvf-8748-9w7h"],"modified":"2024-07-09T17:29:54.092575Z","published":"2024-07-09T16:55:06Z","database_specific":{"review_status":"REVIEWED","url":"https://pkg.go.dev/vuln/GO-2024-2977"},"references":[{"type":"ADVISORY","url":"https://github.com/advisories/GHSA-qjvf-8748-9w7h"},{"type":"FIX","url":"https://github.com/google/nftables/commit/b1f901b05510bed05c232c5049f68d1511b56a19"},{"type":"REPORT","url":"https://github.com/google/nftables/issues/225"},{"type":"WEB","url":"https://bugs.launchpad.net/ubuntu/+source/crowdsec-firewall-bouncer/+bug/2069596"},{"type":"WEB","url":"https://github.com/crowdsecurity/cs-firewall-bouncer/issues/368"}],"affected":[{"package":{"name":"github.com/google/nftables","ecosystem":"Go","purl":"pkg:golang/github.com/google/nftables"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0.1.0"},{"fixed":"0.2.0"}]}],"ecosystem_specific":{"imports":[{"path":"github.com/google/nftables","symbols":["Conn.AddSet"]}]},"database_specific":{"source":"https://vuln.go.dev/ID/GO-2024-2977.json"}}],"schema_version":"1.7.3"}