Total vulnerabilities in the database
Go before 1.12.16 and 1.13.x before 1.13.7 (and the crypto/cryptobyte package before 0.0.0-20200124225646-8b5121be2f68 for Go) allows attacks on clients (resulting in a panic) via a malformed X.509 certificate.
Software | From | Fixed in |
---|---|---|
golang / go | 1.13 | 1.13.7 |
golang / go | 1.12 | 1.12.6 |
debian / debian_linux | 10.0 | 10.0.x |
fedoraproject / fedora | 31 | 31.x |
![]() |
2.0.0 | 2.16.8 |
![]() |
3.0.0 | 3.1.0 |
![]() |
- | 0.0.0-20200124225646-8b5121be2f68 |