CVE-2021-38297

Go before 1.16.9 and 1.17.x before 1.17.2 has a Buffer Overflow via large arguments in a function invocation from a WASM module, when GOARCH=wasm GOOS=js is used.
Classic Buffer Overflow
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 93%
Affected Products (NVD)
VendorProductVersion
golanggo
𝑥
< 1.16.9
golanggo
1.17.0 ≤
𝑥
< 1.17.2
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
golang-1.15
bullseye
1.15.15-1~deb11u4
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
golang
bionic
dne
focal
dne
hirsute
dne
impish
dne
jammy
dne
kinetic
dne
lunar
dne
mantic
dne
noble
dne
trusty
dne
xenial
dne
golang-1.10
bionic
needs-triage
focal
dne
hirsute
dne
impish
dne
jammy
dne
kinetic
dne
lunar
dne
mantic
dne
noble
dne
trusty
needs-triage
xenial
needs-triage
golang-1.13
bionic
needs-triage
focal
needs-triage
hirsute
ignored
impish
ignored
jammy
needs-triage
kinetic
ignored
lunar
dne
mantic
dne
noble
dne
trusty
dne
xenial
needs-triage
golang-1.14
bionic
dne
focal
needs-triage
hirsute
ignored
impish
dne
jammy
dne
kinetic
dne
lunar
dne
mantic
dne
noble
dne
trusty
dne
xenial
dne
golang-1.15
bionic
dne
focal
dne
hirsute
ignored
impish
ignored
trusty
dne
xenial
dne
golang-1.16
bionic
needs-triage
focal
needs-triage
hirsute
ignored
impish
ignored
jammy
dne
kinetic
dne
lunar
dne
mantic
dne
noble
dne
trusty
dne
xenial
ignored
golang-1.6
bionic
dne
focal
dne
hirsute
dne
impish
dne
jammy
dne
kinetic
dne
lunar
dne
mantic
dne
noble
dne
trusty
dne
xenial
needs-triage
golang-1.8
bionic
needs-triage
focal
dne
hirsute
dne
impish
dne
jammy
dne
kinetic
dne
lunar
dne
mantic
dne
noble
dne
trusty
dne
xenial
dne
golang-1.9
bionic
needs-triage
focal
dne
hirsute
dne
impish
dne
jammy
dne
kinetic
dne
lunar
dne
mantic
dne
noble
dne
trusty
dne
xenial
dne
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
google-guest-agent
suse enterprise sap 15 SP1
20230221.00-150000.1.34.1
fixed
suse enterprise sap 15 SP2
20230221.00-150000.1.34.1
fixed
suse enterprise sap 15 SP3
20230221.00-150000.1.34.1
fixed
suse enterprise sap 15 SP4
20230221.00-150000.1.34.1
fixed
suse enterprise sap 15 SP5
20230221.00-150000.1.34.1
fixed
suse enterprise sap 15 SP6
20230221.00-150000.1.34.1
fixed
suse enterprise sap 15 SP7
20230221.00-150000.1.34.1
fixed
suse enterprise server 15 SP1
20230221.00-150000.1.34.1
fixed
suse enterprise server 15 SP2
20230221.00-150000.1.34.1
fixed
suse enterprise server 15 SP3
20230221.00-150000.1.34.1
fixed
suse enterprise server 15 SP4
20230221.00-150000.1.34.1
fixed
suse enterprise server 15 SP5
20230221.00-150000.1.34.1
fixed
suse enterprise server 15 SP6
20230221.00-150000.1.34.1
fixed
suse enterprise server 15 SP7
20230221.00-150000.1.34.1
fixed
google-osconfig-agent
suse enterprise sap 15 SP1
20230222.00-150000.1.27.1
fixed
suse enterprise sap 15 SP2
20230222.00-150000.1.27.1
fixed
suse enterprise sap 15 SP3
20230222.00-150000.1.27.1
fixed
suse enterprise sap 15 SP4
20230222.00-150000.1.27.1
fixed
suse enterprise sap 15 SP5
20230222.00-150000.1.27.1
fixed
suse enterprise sap 15 SP6
20230222.00-150000.1.27.1
fixed
suse enterprise sap 15 SP7
20230222.00-150000.1.27.1
fixed
suse enterprise server 15 SP1
20230222.00-150000.1.27.1
fixed
suse enterprise server 15 SP2
20230222.00-150000.1.27.1
fixed
suse enterprise server 15 SP3
20230222.00-150000.1.27.1
fixed
suse enterprise server 15 SP4
20230222.00-150000.1.27.1
fixed
suse enterprise server 15 SP5
20230222.00-150000.1.27.1
fixed
suse enterprise server 15 SP6
20230222.00-150000.1.27.1
fixed
suse enterprise server 15 SP7
20230222.00-150000.1.27.1
fixed