Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:40155
HistoryApr 18, 2023 - 10:56 a.m.

Denial Of Service (DoS)

2023-04-1810:56:33
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
22
denial of service
vulnerability
http headers
memory exhaustion
golang

0.002 Low

EPSS

Percentile

59.8%

github.com/golang/go is vulnerable to Denial of Service (DoS) attacks. Unusual patterns of input data cause the upcomingHeaderNewlines function to parse HTTP and MIME headers which allocates more memory than required, causing the application to crash via memory exhaustion.