First published: Mon Sep 17 2018(Updated: )
The html package (aka x/net/html) through 2018-09-17 in Go mishandles <template><tBody><isindex/action=0>, leading to a "panic: runtime error" in inBodyIM in parse.go during an html.Parse call
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
go/golang.org/x/net | <0.0.0-20180921000356-2f5d2388922f | 0.0.0-20180921000356-2f5d2388922f |
Golang Net | <=2018-09-17 | |
Fedoraproject Fedora | =28 | |
Fedoraproject Fedora | =29 | |
<=2018-09-17 | ||
=28 | ||
=29 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.