Bug | buster | Description |
---|
CVE-2022-30629 | vulnerable (no DSA) | |
CVE-2022-24921 | vulnerable (no DSA) | regexp.Compile in Go before 1.16.15 and 1.17.x before 1.17.8 allows st ... |
CVE-2022-23806 | vulnerable (no DSA) | Curve.IsOnCurve in crypto/elliptic in Go before 1.16.14 and 1.17.x bef ... |
CVE-2022-23773 | vulnerable (no DSA) | cmd/go in Go before 1.16.14 and 1.17.x before 1.17.7 can misinterpret ... |
CVE-2022-23772 | vulnerable (no DSA) | Rat.SetString in math/big in Go before 1.16.14 and 1.17.x before 1.17. ... |
CVE-2021-44717 | vulnerable (no DSA) | Go before 1.16.12 and 1.17.x before 1.17.5 on UNIX allows write operat ... |
CVE-2021-44716 | vulnerable (no DSA) | net/http in Go before 1.16.12 and 1.17.x before 1.17.5 allows uncontro ... |
CVE-2021-41771 | vulnerable (no DSA) | ImportedSymbols in debug/macho (for Open or OpenFat) in Go before 1.16 ... |
CVE-2021-39293 | vulnerable (no DSA) | In archive/zip in Go before 1.16.8 and 1.17.x before 1.17.1, a crafted ... |
CVE-2021-38297 | vulnerable (no DSA) | Go before 1.16.9 and 1.17.x before 1.17.2 has a Buffer Overflow via la ... |
CVE-2021-36221 | vulnerable (no DSA) | Go before 1.15.15 and 1.16.x before 1.16.7 has a race condition that c ... |
CVE-2021-34558 | vulnerable (no DSA) | The crypto/tls package of Go through 1.16.5 does not properly assert t ... |
CVE-2021-33198 | vulnerable (no DSA) | In Go before 1.15.13 and 1.16.x before 1.16.5, there can be a panic fo ... |
CVE-2021-33197 | vulnerable (no DSA) | In Go before 1.15.13 and 1.16.x before 1.16.5, some configurations of ... |
CVE-2021-33196 | vulnerable (no DSA) | In archive/zip in Go before 1.15.13 and 1.16.x before 1.16.5, a crafte ... |
CVE-2021-33195 | vulnerable (no DSA) | Go before 1.15.13 and 1.16.x before 1.16.5 has functions for DNS looku ... |
CVE-2021-31525 | vulnerable (no DSA) | net/http in Go before 1.15.12 and 1.16.x before 1.16.4 allows remote a ... |
CVE-2021-29923 | vulnerable (no DSA) | Go before 1.17 does not properly consider extraneous zero characters a ... |
CVE-2021-27918 | vulnerable (no DSA) | encoding/xml in Go before 1.15.9 and 1.16.x before 1.16.1 has an infin ... |
CVE-2021-3115 | vulnerable (no DSA, ignored) | Go before 1.14.14 and 1.15.x before 1.15.7 on Windows is vulnerable to ... |
CVE-2020-28367 | vulnerable (no DSA) | Go before 1.14.12 and 1.15.x before 1.15.5 allows Argument Injection. ... |
CVE-2020-28366 | vulnerable (no DSA) | Go before 1.14.12 and 1.15.x before 1.15.5 allows Code Injection. ... |
CVE-2020-24553 | vulnerable (no DSA) | Go before 1.14.8 and 1.15.x before 1.15.1 allows XSS because text/html ... |
Bug | Description |
---|
CVE-2022-30634 | |
CVE-2022-30580 | |
CVE-2022-29804 | |
CVE-2022-29526 | Go before 1.17.10 and 1.18.x before 1.18.2 has Incorrect Privilege Ass ... |
CVE-2021-41772 | Go before 1.16.10 and 1.17.x before 1.17.3 allows an archive/zip Reade ... |
CVE-2021-3114 | In Go before 1.14.14 and 1.15.x before 1.15.7, crypto/elliptic/p224.go ... |
CVE-2020-28362 | Go before 1.14.12 and 1.15.x before 1.15.4 allows Denial of Service. ... |
CVE-2020-16845 | Go before 1.13.15 and 14.x before 1.14.7 can have an infinite read loo ... |
CVE-2020-15586 | Go before 1.13.13 and 1.14.x before 1.14.5 has a data race in some net ... |
CVE-2020-14039 | In Go before 1.13.13 and 1.14.x before 1.14.5, Certificate.Verify may ... |
CVE-2020-7919 | Go before 1.12.16 and 1.13.x before 1.13.7 (and the crypto/cryptobyte ... |
CVE-2019-17596 | Go before 1.12.11 and 1.3.x before 1.13.2 can panic upon an attempt to ... |
CVE-2019-16276 | Go before 1.12.10 and 1.13.x before 1.13.1 allow HTTP Request Smugglin ... |
CVE-2019-14809 | net/url in Go before 1.11.13 and 1.12.x before 1.12.8 mishandles malfo ... |
CVE-2019-11888 | Go through 1.12.5 on Windows mishandles process creation with a nil en ... |
CVE-2019-9741 | An issue was discovered in net/http in Go 1.11.5. CRLF injection is po ... |
CVE-2019-9634 | Go through 1.12 on Windows misuses certain LoadLibrary functionality, ... |
CVE-2019-9514 | Some HTTP/2 implementations are vulnerable to a reset flood, potential ... |
CVE-2019-9512 | Some HTTP/2 implementations are vulnerable to ping floods, potentially ... |
CVE-2019-6486 | Go before 1.10.8 and 1.11.x before 1.11.5 mishandles P-521 and P-384 e ... |
CVE-2018-16875 | The crypto/x509 package of Go before 1.10.6 and 1.11.x before 1.11.3 d ... |
CVE-2018-16874 | In Go before 1.10.6 and 1.11.x before 1.11.3, the "go get" command is ... |
CVE-2018-16873 | In Go before 1.10.6 and 1.11.x before 1.11.3, the "go get" command is ... |