go is vulnerable to Denial Of Service (DoS). The vulnerability exists in Glob
function in match.go
due to stack exhaustion because having a large number of path separators in Glob which allows an attacker to cause an application crash.
github.com/golang/go/commit/5ebd862b1714dad1544bd10a24c47cdb53ad7f46
github.com/golang/go/issues/53416
go.dev/cl/417066
go.dev/issue/53416
go.googlesource.com/go/+/ac68c6c683409f98250d34ad282b9e1b0c9095ef
groups.google.com/g/golang-announce/c/nqrv9fbR0zE
lists.fedoraproject.org/archives/list/[email protected]/message/RQXU752ALW53OJAF5MG3WMR5CCZVLWW6/
pkg.go.dev/vuln/GO-2022-0522
secdb.alpinelinux.org/edge/community.yaml
secdb.alpinelinux.org/v3.16/community.yaml