Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:36380
HistoryJul 18, 2022 - 6:48 a.m.

Denial Of Service (DoS)

2022-07-1806:48:12
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15
denial of service
github.com/golang/go
vulnerability
buffer overflow
application crash
software

EPSS

0.002

Percentile

51.6%

crypto/rand in github.com/golang/go is vulnerable to denial of service. The vulnerability exists when passing a buffer larger than 1 << 32 - 1 bytes which allows an attacker to cause an application crash.