Total vulnerabilities in the database
Go before 1.16.10 and 1.17.x before 1.17.3 allows an archive/zip Reader.Open panic via a crafted ZIP archive containing an invalid name or an empty filename field.
Software | From | Fixed in |
---|---|---|
golang / go | - | 1.16.10 |
golang / go | 1.17.0 | 1.17.3 |
fedoraproject / fedora | 34 | 34.x |
fedoraproject / fedora | 35 | 35.x |