{"schema_version":"1.3.1","id":"GO-2024-2528","modified":"2025-08-05T19:57:40Z","published":"2024-06-28T15:28:53Z","aliases":["GHSA-j86v-2vjr-fg8f"],"summary":"Etcd Gateway TLS endpoint validation only confirms TCP reachability in go.etcd.io/etcd","details":"Etcd Gateway TLS endpoint validation only confirms TCP reachability in go.etcd.io/etcd","affected":[{"package":{"name":"go.etcd.io/etcd","ecosystem":"Go"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"}]}],"ecosystem_specific":{}},{"package":{"name":"go.etcd.io/etcd/v3","ecosystem":"Go"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"}]}],"ecosystem_specific":{"custom_ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.3.23"},{"introduced":"3.4.0-rc.0"},{"fixed":"3.4.10"}]}]}}],"references":[{"type":"ADVISORY","url":"https://github.com/etcd-io/etcd/security/advisories/GHSA-j86v-2vjr-fg8f"}],"database_specific":{"url":"https://pkg.go.dev/vuln/GO-2024-2528","review_status":"REVIEWED"}}