Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-7711

Опубликовано: 23 авг. 2020
Источник: debian
EPSS Низкий

Описание

This affects all versions of package github.com/russellhaering/goxmldsig. There is a crash on nil-pointer dereference caused by sending malformed XML signatures.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
golang-github-russellhaering-goxmldsigfixed1.1.1-1package
golang-github-russellhaering-goxmldsigfixed1.1.0-1+deb11u1bullseyepackage
golang-github-russellhaering-goxmldsigfixed0.0~git20170911.b7efc62-1+deb10u1busterpackage

Примечания

  • https://github.com/russellhaering/goxmldsig/issues/48

  • https://github.com/russellhaering/goxmldsig/commit/fb23e0af61c023e3a6dae8ad30dbd0f04d8a4d8f

EPSS

Процентиль: 63%
0.00438
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 5 лет назад

This affects all versions of package github.com/russellhaering/goxmldsig. There is a crash on nil-pointer dereference caused by sending malformed XML signatures.

CVSS3: 7.5
redhat
больше 5 лет назад

This affects all versions of package github.com/russellhaering/goxmldsig. There is a crash on nil-pointer dereference caused by sending malformed XML signatures.

CVSS3: 7.5
nvd
больше 5 лет назад

This affects all versions of package github.com/russellhaering/goxmldsig. There is a crash on nil-pointer dereference caused by sending malformed XML signatures.

CVSS3: 7.5
github
больше 3 лет назад

goxmldsig vulnerable to crash on nil-pointer dereference caused by sending malformed XML signatures

EPSS

Процентиль: 63%
0.00438
Низкий