Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
7.8
CVE-2016-3958
- EPSS 0.4%
- Veröffentlicht 23.05.2016 19:59:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
Untrusted search path vulnerability in Go before 1.5.4 and 1.6.x before 1.6.1 on Windows allows local users to gain privileges via a Trojan horse DLL in the current working directory, related to use of the LoadLibrary function.
7.5
CVE-2015-8618
- EPSS 2.63%
- Veröffentlicht 27.01.2016 20:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
The Int.Exp Montgomery code in the math/big library in Go 1.5.x before 1.5.3 mishandles carry propagation and produces incorrect output, which makes it easier for attackers to obtain private RSA keys via unspecified vectors.
4.3
CVE-2014-7189
- EPSS 1.38%
- Veröffentlicht 07.10.2014 14:55:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
crpyto/tls in Go 1.1 before 1.3.2, when SessionTicketsDisabled is enabled, allows man-in-the-middle attackers to spoof clients via unspecified vectors.