Inappropriate coding practices In golang-golang-x-net
Description
golang.org/x/net/html Infinite Loop vulnerability Go through 1.15.12 and 1.16.x through 1.16.4 has a golang.org/x/net/html infinite loop via crafted ParseFragment input.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
debian 13 | 1:0.0+git20210119.5f4716e+dfsg-4 | ||
debian 12 | 1:0.0+git20210119.5f4716e+dfsg-4 | ||
go | 0.0.0-20210520170846-37e1c6afe023 | ||
go | 0.0.0-20210520170846-37e1c6afe023 | ||
debian 11 | 1:0.0+git20210119.5f4716e+dfsg-4 | ||
debian 14 | 1:0.0+git20210119.5f4716e+dfsg-4 | ||
rpm rhel7 | - | - |
Aliases
1. 2. 3. 4. 5. 6. 7.
References
1. 2. 3. 4. 5. 6. 7. 8.