First published: Thu May 20 2021(Updated: )
A flaw was found in golang. An attacker can craft an input to ParseFragment within parse.go that would cause it to enter an infinite loop and never return. The greatest threat to the system is of availability.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
go/golang.org/x/net | <0.0.0-20210520170846-37e1c6afe023 | 0.0.0-20210520170846-37e1c6afe023 |
Golang Go | <=1.15.12 | |
Golang Go | >=1.16.0<=1.16.4 | |
Fedoraproject Fedora | =36 | |
redhat/golang.org/x/net v0.0.0-20210520170846 | <37 | 37 |
<=1.15.12 | ||
>=1.16.0<=1.16.4 | ||
=36 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)