Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:40115
HistoryApr 11, 2023 - 11:43 p.m.

Denial Of Service (DoS)

2023-04-1123:43:20
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
18
github
golang
dos attacks
memory exhaustion
http
mime headers

0.002 Low

EPSS

Percentile

59.8%

github.com/golang/go is vulnerable to Denial of Service (DoS) attacks. Unusual patterns of input data cause the upcomingHeaderNewlines function to parse HTTP and MIME headers which allocates more memory than required, causing the application to crash via memory exhaustion.