CVE-2021-41772
08.11.2021, 06:15
Go before 1.16.10 and 1.17.x before 1.17.3 allows an archive/zip Reader.Open panic via a crafted ZIP archive containing an invalid name or an empty filename field.Enginsight
Vendor | Product | Version |
---|---|---|
golang | go | 𝑥 < 1.16.10 |
golang | go | 1.17.0 ≤ 𝑥 < 1.17.3 |
oracle | timesten_in-memory_database | - |
𝑥
= Vulnerable software versions

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
golang-1.11 |
| ||||||||||||||||||||||
golang-1.15 |
| ||||||||||||||||||||||
golang-1.16 |
| ||||||||||||||||||||||
golang-1.17 |
| ||||||||||||||||||||||
golang-1.7 |
| ||||||||||||||||||||||
golang-1.8 |
|
Common Weakness Enumeration
References