Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-44717

Опубликовано: 01 янв. 2022
Источник: nvd
CVSS3: 4.8
CVSS2: 5.8
EPSS Низкий

Описание

Go before 1.16.12 and 1.17.x before 1.17.5 on UNIX allows write operations to an unintended file or unintended network connection as a consequence of erroneous closing of file descriptor 0 after file-descriptor exhaustion.

Уязвимые конфигурации

Конфигурация 1

Одновременно

Одно из

cpe:2.3:a:golang:go:*:*:*:*:*:*:*:*
Версия до 1.16.12 (исключая)
cpe:2.3:a:golang:go:*:*:*:*:*:*:*:*
Версия от 1.17.0 (включая) до 1.17.5 (исключая)
cpe:2.3:o:opengroup:unix:-:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*

EPSS

Процентиль: 63%
0.00441
Низкий

4.8 Medium

CVSS3

5.8 Medium

CVSS2

Дефекты

CWE-404

Связанные уязвимости

CVSS3: 4.8
ubuntu
около 4 лет назад

Go before 1.16.12 and 1.17.x before 1.17.5 on UNIX allows write operations to an unintended file or unintended network connection as a consequence of erroneous closing of file descriptor 0 after file-descriptor exhaustion.

CVSS3: 4.8
redhat
около 4 лет назад

Go before 1.16.12 and 1.17.x before 1.17.5 on UNIX allows write operations to an unintended file or unintended network connection as a consequence of erroneous closing of file descriptor 0 after file-descriptor exhaustion.

CVSS3: 4.8
debian
около 4 лет назад

Go before 1.16.12 and 1.17.x before 1.17.5 on UNIX allows write operat ...

CVSS3: 4.8
github
около 4 лет назад

Go before 1.16.12 and 1.17.x before 1.17.5 on UNIX allows write operations to an unintended file or unintended network connection as a consequence of erroneous closing of file descriptor 0 after file-descriptor exhaustion.

suse-cvrf
около 4 лет назад

Security update for go1.17

EPSS

Процентиль: 63%
0.00441
Низкий

4.8 Medium

CVSS3

5.8 Medium

CVSS2

Дефекты

CWE-404