Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-42499

Опубликовано: 07 мая 2026
Источник: debian
EPSS Низкий

Описание

Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
golang-1.25fixed1.25.10-1package
golang-1.26fixed1.26.3-1package
golang-1.24removedpackage
golang-1.24no-dsatrixiepackage
golang-1.19removedpackage
golang-1.19no-dsabookwormpackage
golang-1.15removedpackage
golang-1.15postponedbullseyepackage

Примечания

  • https://go-review.googlesource.com/c/go/+/771520

  • https://github.com/golang/go/issues/78987

  • https://groups.google.com/g/golang-announce/c/qcCIEXso47M

EPSS

Процентиль: 53%
0.00798
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
3 месяца назад

Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.

CVSS3: 7.5
redhat
3 месяца назад

Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.

CVSS3: 7.5
nvd
3 месяца назад

Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.

msrc
3 месяца назад

Quadratic string concatenation in consumePhrase in net/mail

CVSS3: 7.5
github
3 месяца назад

Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.

EPSS

Процентиль: 53%
0.00798
Низкий