Information on source package golang-1.15

Available versions

ReleaseVersion
bullseye1.15.15-1~deb11u2
bookworm1.15.15-5
sid1.15.15-5

Open issues

BugbullseyebookwormsidDescription
CVE-2021-29923vulnerablevulnerablevulnerableGo before 1.17 does not properly consider extraneous zero characters a ...

Open unimportant issues

BugbullseyebookwormsidDescription
CVE-2020-29511vulnerablevulnerablevulnerableThe encoding/xml package in Go (all versions) does not correctly prese ...
CVE-2020-29510vulnerablevulnerablevulnerableThe encoding/xml package in Go versions 1.15 and earlier does not corr ...
CVE-2020-29509vulnerablevulnerablevulnerableThe encoding/xml package in Go (all versions) does not correctly prese ...

Resolved issues

BugDescription
CVE-2021-44717Go before 1.16.12 and 1.17.x before 1.17.5 on UNIX allows write operat ...
CVE-2021-44716net/http in Go before 1.16.12 and 1.17.x before 1.17.5 allows uncontro ...
CVE-2021-41772Go before 1.16.10 and 1.17.x before 1.17.3 allows an archive/zip Reade ...
CVE-2021-41771ImportedSymbols in debug/macho (for Open or OpenFat) in Go before 1.16 ...
CVE-2021-39293In archive/zip in Go before 1.16.8 and 1.17.x before 1.17.1, a crafted ...
CVE-2021-38297Go before 1.16.9 and 1.17.x before 1.17.2 has a Buffer Overflow via la ...
CVE-2021-36221Go before 1.15.15 and 1.16.x before 1.16.7 has a race condition that c ...
CVE-2021-34558The crypto/tls package of Go through 1.16.5 does not properly assert t ...
CVE-2021-33198In Go before 1.15.13 and 1.16.x before 1.16.5, there can be a panic fo ...
CVE-2021-33197In Go before 1.15.13 and 1.16.x before 1.16.5, some configurations of ...
CVE-2021-33196In archive/zip in Go before 1.15.13 and 1.16.x before 1.16.5, a crafte ...
CVE-2021-33195Go before 1.15.13 and 1.16.x before 1.16.5 has functions for DNS looku ...
CVE-2021-31525net/http in Go before 1.15.12 and 1.16.x before 1.16.4 allows remote a ...
CVE-2021-27919archive/zip in Go 1.16.x before 1.16.1 allows attackers to cause a den ...
CVE-2021-27918encoding/xml in Go before 1.15.9 and 1.16.x before 1.16.1 has an infin ...
CVE-2021-3115Go before 1.14.14 and 1.15.x before 1.15.7 on Windows is vulnerable to ...
CVE-2021-3114In Go before 1.14.14 and 1.15.x before 1.15.7, crypto/elliptic/p224.go ...
CVE-2020-28367Go before 1.14.12 and 1.15.x before 1.15.5 allows Argument Injection. ...
CVE-2020-28366Go before 1.14.12 and 1.15.x before 1.15.5 allows Code Injection. ...
CVE-2020-28362Go before 1.14.12 and 1.15.x before 1.15.4 allows Denial of Service. ...
CVE-2020-24553Go before 1.14.8 and 1.15.x before 1.15.1 allows XSS because text/html ...
CVE-2020-16845Go before 1.13.15 and 14.x before 1.14.7 can have an infinite read loo ...
CVE-2020-15586Go before 1.13.13 and 1.14.x before 1.14.5 has a data race in some net ...
CVE-2020-14039In Go before 1.13.13 and 1.14.x before 1.14.5, Certificate.Verify may ...

Search for package or bug name: Reporting problems