CVE-2021-36221 log
Source |
|
Severity | Low |
Remote | Yes |
Type | Denial of service |
Description | A security issue has been found in Go before version 1.16.7. A net/http/httputil ReverseProxy can panic due to a race condition if its Handler aborts with ErrAbortHandler, for example due to an error in copying the response body. An attacker might be able to force the conditions leading to the race condition. |
Group | Package | Affected | Fixed | Severity | Status | Ticket |
---|---|---|---|---|---|---|
AVG-2259 | go | 2:1.16.6-1 | 2:1.16.7-1 | Low | Fixed |
References |
---|
https://groups.google.com/g/golang-announce/c/uHACNfXAZqk https://github.com/golang/go/issues/46866 https://github.com/golang/go/commit/accf363d5da864521c90b152fb734f3f15e00521 |