Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-3114

Опубликовано: 26 янв. 2021
Источник: debian
EPSS Низкий

Описание

In Go before 1.14.14 and 1.15.x before 1.15.7, crypto/elliptic/p224.go can generate incorrect outputs, related to an underflow of the lowest limb during the final complete reduction in the P-224 field.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
golang-1.15fixed1.15.7-1package
golang-1.11removedpackage
golang-1.8removedpackage
golang-1.7removedpackage

Примечания

  • https://github.com/golang/go/issues/43786

  • https://github.com/golang/go/commit/d95ca9138026cbe40e0857d76a81a16d03230871 (master)

  • https://github.com/golang/go/commit/5c8fd727c41e31273923c32b33d4f25855f4e123 (1.15.7)

EPSS

Процентиль: 35%
0.00137
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 4 лет назад

In Go before 1.14.14 and 1.15.x before 1.15.7, crypto/elliptic/p224.go can generate incorrect outputs, related to an underflow of the lowest limb during the final complete reduction in the P-224 field.

CVSS3: 6.5
redhat
больше 4 лет назад

In Go before 1.14.14 and 1.15.x before 1.15.7, crypto/elliptic/p224.go can generate incorrect outputs, related to an underflow of the lowest limb during the final complete reduction in the P-224 field.

CVSS3: 6.5
nvd
больше 4 лет назад

In Go before 1.14.14 and 1.15.x before 1.15.7, crypto/elliptic/p224.go can generate incorrect outputs, related to an underflow of the lowest limb during the final complete reduction in the P-224 field.

CVSS3: 6.5
msrc
больше 4 лет назад

Описание отсутствует

CVSS3: 6.5
github
около 3 лет назад

In Go before 1.14.14 and 1.15.x before 1.15.7, crypto/elliptic/p224.go can generate incorrect outputs, related to an underflow of the lowest limb during the final complete reduction in the P-224 field.

EPSS

Процентиль: 35%
0.00137
Низкий