Lucene search

K
gitlabHttps://gitlab.com/gitlab-org/security-products/gemnasium-dbGITLAB-E47003773F70A270EC54682DF9E5D229
HistoryMay 13, 2022 - 12:00 a.m.

Improper Restriction of Operations within the Bounds of a Memory Buffer

2022-05-1300:00:00
https://gitlab.com/gitlab-org/security-products/gemnasium-db
gitlab.com
7
memory buffer
runtime error
go
html package
security vulnerability

EPSS

0.004

Percentile

73.4%

The html package (aka x/net/html) through 2018-09-17 in Go mishandles <template><tbody><isindex/action=0>, leading to a “panic: runtime error” in inBodyIM in parse.go during an html.Parse call.