Lucene search

K
osvGoogleOSV:GHSA-R4GV-VJ59-CCCM
HistoryJun 23, 2021 - 5:27 p.m.

Control character injection in console output in github.com/ipfs/go-ipfs

2021-06-2317:27:27
Google
osv.dev
8
control character
console output
github
ipfs
malicious action
patched
version upgrade
security advisory
email contact

EPSS

0.002

Percentile

55.7%

Impact

Control characters are not escaped from console output. This can result in hiding input from the user which could result in the user taking an unknown, malicious action.

Patches

For more information

If you have any questions or comments about this advisory:

EPSS

0.002

Percentile

55.7%