[USN-5873-1] Go Text vulnerabilities

Severity High
Affected Packages 5
CVEs 5

Several security issues were fixed in Go Text.

It was discovered that Go Text incorrectly handled certain encodings. An
attacker could possibly use this issue to cause a denial of service. This
issue only affected Ubuntu 18.04 LTS and Ubuntu 20.04 LTS. (CVE-2020-14040)

It was discovered that Go Text incorrectly handled certain BCP 47 language
tags. An attacker could possibly use this issue to cause a denial of service.
CVE-2020-28851, CVE-2020-28852 and CVE-2021-38561 affected only
Ubuntu 18.04 LTS and Ubuntu 20.04 LTS.
(CVE-2020-28851, CVE-2020-28852, CVE-2021-38561, CVE-2022-32149)

Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:deb/ubuntu/golang-x-text-dev?distro=bionic ubuntu golang-x-text-dev < 0.0~git20170627.0.6353ef0-1ubuntu2.1 bionic
Affected pkg:deb/ubuntu/golang-golang-x-text-dev?distro=kinetic ubuntu golang-golang-x-text-dev < 0.3.7-1ubuntu0.22.10.1 kinetic
Affected pkg:deb/ubuntu/golang-golang-x-text-dev?distro=jammy ubuntu golang-golang-x-text-dev < 0.3.7-1ubuntu0.20.04.1 jammy
Affected pkg:deb/ubuntu/golang-golang-x-text-dev?distro=focal ubuntu golang-golang-x-text-dev < 0.3.2-4ubuntu0.1 focal
Affected pkg:deb/ubuntu/golang-golang-x-text-dev?distro=bionic ubuntu golang-golang-x-text-dev < 0.0~git20170627.0.6353ef0-1ubuntu2.1 bionic
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...