Lucene search

K
prionPRIOn knowledge basePRION:CVE-2020-14039
HistoryJul 17, 2020 - 4:15 p.m.

Design/Logic Flaw

2020-07-1716:15:00
PRIOn knowledge base
www.prio-n.com
9

5.4 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

65.1%

In Go before 1.13.13 and 1.14.x before 1.14.5, Certificate.Verify may lack a check on the VerifyOptions.KeyUsages EKU requirements (if VerifyOptions.Roots equals nil and the installation is on Windows). Thus, X.509 certificate verification is incomplete.

CPENameOperatorVersion
golt1.13.13
goge1.14.0
golt1.14.5
leapeq15.1
leapeq15.2

5.4 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

65.1%