Vulnerability Report: GO-2022-0433

standard library

encoding/pem in Go before 1.17.9 and 1.18.x before 1.18.1 has a Decode stack overflow via a large amount of PEM data.

Affected Packages

  • Path
    Go Versions
    Symbols
  • before go1.17.9, from go1.18.0-0 before go1.18.1

Aliases

References

Credits

  • Juho Nurminen of Mattermost

Feedback

See anything missing or incorrect? Suggest an edit to this report.

Jump to

Keyboard shortcuts

? : This menu
/ : Search site
f or F : Jump to
y or Y : Canonical URL