Lucene search

K
prionPRIOn knowledge basePRION:CVE-2021-38561
HistoryDec 26, 2022 - 6:15 a.m.

Design/Logic Flaw

2022-12-2606:15:00
PRIOn knowledge base
www.prio-n.com
9
golang text language
out-of-bounds read
bcp 47 parsing
denial-of-service

7.4 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

41.8%

golang.org/x/text/language in golang.org/x/text before 0.3.7 can panic with an out-of-bounds read during BCP 47 language tag parsing. Index calculation is mishandled. If parsing untrusted user input, this can be used as a vector for a denial-of-service attack.

CPENameOperatorVersion
textlt0.3.7

7.4 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

41.8%