Логотип exploitDog
bind:"CVE-2020-14040"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2020-14040"

Количество 8

Количество 8

ubuntu логотип

CVE-2020-14040

около 5 лет назад

The x/text package before 0.3.3 for Go has a vulnerability in encoding/unicode that could lead to the UTF-16 decoder entering an infinite loop, causing the program to crash or run out of memory. An attacker could provide a single byte to a UTF16 decoder instantiated with UseBOM or ExpectBOM to trigger an infinite loop if the String function on the Decoder is called, or the Decoder is passed to golang.org/x/text/transform.String.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2020-14040

около 5 лет назад

The x/text package before 0.3.3 for Go has a vulnerability in encoding/unicode that could lead to the UTF-16 decoder entering an infinite loop, causing the program to crash or run out of memory. An attacker could provide a single byte to a UTF16 decoder instantiated with UseBOM or ExpectBOM to trigger an infinite loop if the String function on the Decoder is called, or the Decoder is passed to golang.org/x/text/transform.String.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2020-14040

около 5 лет назад

The x/text package before 0.3.3 for Go has a vulnerability in encoding/unicode that could lead to the UTF-16 decoder entering an infinite loop, causing the program to crash or run out of memory. An attacker could provide a single byte to a UTF16 decoder instantiated with UseBOM or ExpectBOM to trigger an infinite loop if the String function on the Decoder is called, or the Decoder is passed to golang.org/x/text/transform.String.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2020-14040

около 5 лет назад

The x/text package before 0.3.3 for Go has a vulnerability in encoding ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-5rcv-m4m3-hfh7

около 4 лет назад

golang.org/x/text Infinite loop

CVSS3: 7.5
EPSS: Низкий
rocky логотип

RLSA-2020:4694

больше 4 лет назад

Moderate: container-tools:rhel8 security, bug fix, and enhancement update

EPSS: Низкий
oracle-oval логотип

ELSA-2020-4694

больше 4 лет назад

ELSA-2020-4694: container-tools:ol8 security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2020-3665

почти 5 лет назад

ELSA-2020-3665: go-toolset:ol8 security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2020-14040

The x/text package before 0.3.3 for Go has a vulnerability in encoding/unicode that could lead to the UTF-16 decoder entering an infinite loop, causing the program to crash or run out of memory. An attacker could provide a single byte to a UTF16 decoder instantiated with UseBOM or ExpectBOM to trigger an infinite loop if the String function on the Decoder is called, or the Decoder is passed to golang.org/x/text/transform.String.

CVSS3: 7.5
0%
Низкий
около 5 лет назад
redhat логотип
CVE-2020-14040

The x/text package before 0.3.3 for Go has a vulnerability in encoding/unicode that could lead to the UTF-16 decoder entering an infinite loop, causing the program to crash or run out of memory. An attacker could provide a single byte to a UTF16 decoder instantiated with UseBOM or ExpectBOM to trigger an infinite loop if the String function on the Decoder is called, or the Decoder is passed to golang.org/x/text/transform.String.

CVSS3: 7.5
0%
Низкий
около 5 лет назад
nvd логотип
CVE-2020-14040

The x/text package before 0.3.3 for Go has a vulnerability in encoding/unicode that could lead to the UTF-16 decoder entering an infinite loop, causing the program to crash or run out of memory. An attacker could provide a single byte to a UTF16 decoder instantiated with UseBOM or ExpectBOM to trigger an infinite loop if the String function on the Decoder is called, or the Decoder is passed to golang.org/x/text/transform.String.

CVSS3: 7.5
0%
Низкий
около 5 лет назад
debian логотип
CVE-2020-14040

The x/text package before 0.3.3 for Go has a vulnerability in encoding ...

CVSS3: 7.5
0%
Низкий
около 5 лет назад
github логотип
GHSA-5rcv-m4m3-hfh7

golang.org/x/text Infinite loop

CVSS3: 7.5
0%
Низкий
около 4 лет назад
rocky логотип
RLSA-2020:4694

Moderate: container-tools:rhel8 security, bug fix, and enhancement update

больше 4 лет назад
oracle-oval логотип
ELSA-2020-4694

ELSA-2020-4694: container-tools:ol8 security, bug fix, and enhancement update (MODERATE)

больше 4 лет назад
oracle-oval логотип
ELSA-2020-3665

ELSA-2020-3665: go-toolset:ol8 security update (MODERATE)

почти 5 лет назад

Уязвимостей на страницу