Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-11888

Опубликовано: 13 мая 2019
Источник: debian
EPSS Низкий

Описание

Go through 1.12.5 on Windows mishandles process creation with a nil environment in conjunction with a non-nil token, which allows attackers to obtain sensitive information or gain privileges.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
golang-1.12not-affectedpackage
golang-1.11not-affectedpackage

Примечания

  • https://go-review.googlesource.com/c/go/+/176619

EPSS

Процентиль: 62%
0.00422
Низкий

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 6 лет назад

Go through 1.12.5 on Windows mishandles process creation with a nil environment in conjunction with a non-nil token, which allows attackers to obtain sensitive information or gain privileges.

CVSS3: 9.8
nvd
больше 6 лет назад

Go through 1.12.5 on Windows mishandles process creation with a nil environment in conjunction with a non-nil token, which allows attackers to obtain sensitive information or gain privileges.

github
больше 3 лет назад

Go through 1.12.5 on Windows mishandles process creation with a nil environment in conjunction with a non-nil token, which allows attackers to obtain sensitive information or gain privileges.

EPSS

Процентиль: 62%
0.00422
Низкий