Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-27143

Опубликовано: 08 апр. 2026
Источник: nvd
CVSS3: 9.8
EPSS Низкий

Описание

Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the compiler would allow for invalid indexing to occur at runtime, potentially leading to memory corruption.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:golang:go:*:*:*:*:*:*:*:*
Версия до 1.25.9 (исключая)
cpe:2.3:a:golang:go:*:*:*:*:*:*:*:*
Версия от 1.26.0 (включая) до 1.26.2 (исключая)

EPSS

Процентиль: 41%
0.00536
Низкий

9.8 Critical

CVSS3

Дефекты

NVD-CWE-Other

Связанные уязвимости

CVSS3: 9.8
ubuntu
3 месяца назад

Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the compiler would allow for invalid indexing to occur at runtime, potentially leading to memory corruption.

CVSS3: 8.1
redhat
3 месяца назад

Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the compiler would allow for invalid indexing to occur at runtime, potentially leading to memory corruption.

msrc
21 день назад

Missing bound checks can lead to memory corruption in safe Go in cmd/compile

CVSS3: 9.8
debian
3 месяца назад

Arithmetic over induction variables in loops were not correctly checke ...

CVSS3: 9.8
github
3 месяца назад

Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the compiler would allow for invalid indexing to occur at runtime, potentially leading to memory corruption.

EPSS

Процентиль: 41%
0.00536
Низкий

9.8 Critical

CVSS3

Дефекты

NVD-CWE-Other