Total vulnerabilities in the database
Code injection in the go command with cgo before Go 1.14.12 and Go 1.15.5 allows arbitrary code execution at build time via a malicious unquoted symbol name in a linked object file.
Software | From | Fixed in |
---|---|---|
golang / go | - | 1.14.12 |
golang / go | 1.15 | 1.15.5 |
fedoraproject / fedora | 32 | 32.x |
fedoraproject / fedora | 33 | 33.x |