[GO-2021-0242] Panic on inputs with large exponents in math/big

Severity High
Affected Packages 2
Fixed Packages 2
CVEs 1

Rat.SetString and Rat.UnmarshalText may cause a panic or an unrecoverable fatal
error if passed inputs with very large exponents.

Package Affected Version
pkg:golang/math/big >= 1.16.4, < 1.15.13
pkg:golang/math/big >= 1.16.4, < 1.16.5
Package Fixed Version
pkg:golang/math/big = 1.15.13
pkg:golang/math/big = 1.16.5
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Fixed pkg:golang/math/big math big = 1.15.13
Affected pkg:golang/math/big math big >= 1.16.4 < 1.15.13
Fixed pkg:golang/math/big math big = 1.16.5
Affected pkg:golang/math/big math big >= 1.16.4 < 1.16.5
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...