Описание
An issue in the Unmarshal function in Go-Yaml v3 causes the program to crash when attempting to deserialize invalid input.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| golang-gopkg-yaml.v3 | fixed | 3.0.1-1 | package | |
| golang-gopkg-yaml.v3 | no-dsa | bullseye | package |
Примечания
https://github.com/go-yaml/yaml/issues/666
https://github.com/go-yaml/yaml/commit/8f96da9f5d5eff988554c1aae1784627c4bf6754 (v3.0.0)
EPSS
Процентиль: 81%
0.01524
Низкий
Связанные уязвимости
CVSS3: 7.5
ubuntu
больше 3 лет назад
An issue in the Unmarshal function in Go-Yaml v3 causes the program to crash when attempting to deserialize invalid input.
CVSS3: 7.5
redhat
больше 3 лет назад
An issue in the Unmarshal function in Go-Yaml v3 causes the program to crash when attempting to deserialize invalid input.
CVSS3: 7.5
nvd
больше 3 лет назад
An issue in the Unmarshal function in Go-Yaml v3 causes the program to crash when attempting to deserialize invalid input.
EPSS
Процентиль: 81%
0.01524
Низкий