Infinite loop in Read in crypto/rand before Go 1.17.11 and Go 1.18.3 on Windows allows attacker to cause an indefinite hang by passing a buffer larger than 1 « 32 - 1 bytes.
The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Go | Golang | * | 1.17.11 (excluding) |
Go | Golang | 1.18.0 (including) | 1.18.3 (excluding) |
Golang-1.15 | Ubuntu | impish | * |
Golang-1.17 | Ubuntu | impish | * |
Golang-1.8 | Ubuntu | bionic | * |