Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-27143

Опубликовано: 08 апр. 2026
Источник: nvd
CVSS3: 9.8
EPSS Низкий

Описание

Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the compiler would allow for invalid indexing to occur at runtime, potentially leading to memory corruption.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:golang:go:*:*:*:*:*:*:*:*
Версия до 1.25.9 (исключая)
cpe:2.3:a:golang:go:*:*:*:*:*:*:*:*
Версия от 1.26.0 (включая) до 1.26.2 (исключая)

EPSS

Процентиль: 42%
0.00536
Низкий

9.8 Critical

CVSS3

Дефекты

NVD-CWE-Other

Связанные уязвимости

CVSS3: 9.8
ubuntu
4 месяца назад

Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the compiler would allow for invalid indexing to occur at runtime, potentially leading to memory corruption.

CVSS3: 8.1
redhat
4 месяца назад

Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the compiler would allow for invalid indexing to occur at runtime, potentially leading to memory corruption.

msrc
2 месяца назад

Missing bound checks can lead to memory corruption in safe Go in cmd/compile

CVSS3: 9.8
debian
4 месяца назад

Arithmetic over induction variables in loops were not correctly checke ...

CVSS3: 9.8
github
4 месяца назад

Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the compiler would allow for invalid indexing to occur at runtime, potentially leading to memory corruption.

EPSS

Процентиль: 42%
0.00536
Низкий

9.8 Critical

CVSS3

Дефекты

NVD-CWE-Other