CVE-2018-17846
01.10.2018, 08:29
The html package (aka x/net/html) through 2018-09-25 in Go mishandles <table><math><select><mi><select></table>, leading to an infinite loop during an html.Parse call because inSelectIM and inSelectInTableIM do not comply with a specification.
Vendor | Product | Version |
---|---|---|
golang | net | 𝑥 ≤ 2018-09-25 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
golang-go.net-dev |
| ||||||||||||||||||||||||||||||
golang-golang-x-net-dev |
|
Common Weakness Enumeration
References