Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-23772

Опубликовано: 11 фев. 2022
Источник: debian
EPSS Низкий

Описание

Rat.SetString in math/big in Go before 1.16.14 and 1.17.x before 1.17.7 has an overflow that can lead to Uncontrolled Memory Consumption.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
golang-1.18fixed1.18~beta2-1package
golang-1.17fixed1.17.7-1package
golang-1.15removedpackage
golang-1.15fixed1.15.15-1~deb11u3bullseyepackage
golang-1.11removedpackage
golang-1.11ignoredbusterpackage
golang-1.8removedpackage
golang-1.7removedpackage

Примечания

  • https://github.com/golang/go/issues/50699

  • https://groups.google.com/g/golang-announce/c/SUsQn0aSgPQ

  • https://github.com/golang/go/commit/539d430efb5043cc6a2d4d4fcd2866b11717039a (go1.17.7)

EPSS

Процентиль: 3%
0.00017
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 3 лет назад

Rat.SetString in math/big in Go before 1.16.14 and 1.17.x before 1.17.7 has an overflow that can lead to Uncontrolled Memory Consumption.

CVSS3: 7.5
redhat
больше 3 лет назад

Rat.SetString in math/big in Go before 1.16.14 and 1.17.x before 1.17.7 has an overflow that can lead to Uncontrolled Memory Consumption.

CVSS3: 7.5
nvd
больше 3 лет назад

Rat.SetString in math/big in Go before 1.16.14 and 1.17.x before 1.17.7 has an overflow that can lead to Uncontrolled Memory Consumption.

CVSS3: 7.5
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 7.5
github
больше 3 лет назад

Rat.SetString in math/big in Go before 1.16.14 and 1.17.x before 1.17.7 has an overflow that can lead to Uncontrolled Memory Consumption.

EPSS

Процентиль: 3%
0.00017
Низкий