Infinite loop in Read in crypto/rand before Go 1.17.11 and Go 1.18.3 on Windows allows attacker to cause an indefinite hang by passing a buffer larger than 1 << 32 - 1 bytes.
2022-07-15T20:15:08.597
2024-11-21T07:03:04.353
Modified
CVSSv3.1: 7.5 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | golang | go | < 1.17.11 | Yes |
Application | golang | go | < 1.18.3 | Yes |
Operating System | microsoft | windows | - | No |
Application | netapp | cloud_insights_telegraf_agent | - | Yes |