cxnleach / Vuln_GO_App

MIT License
0 stars 0 forks source link

CX: CVE-2020-29652 in Go-golang.org/x/crypto-v0.0.0-20201116153603 and 4be66e5b6582 @ Vuln_GO_App.master #75

Open github-actions[bot] opened 1 month ago

github-actions[bot] commented 1 month ago

Description

A Nil Pointer Dereference in the golang.org/x/crypto/ssh component prior to v0.0.0-20201216223049-8b5274cf687f for Go allows remote attackers to cause a Denial of Service against SSH servers.

HIGH Vulnerable Package issue exists @ golang.org/x/crypto in branch master

Vulnerability ID: CVE-2020-29652

Package Name: golang.org/x/crypto

Severity: HIGH

CVSS Score: 7.5

Publish Date: 2020-12-17T05:15:00

Current Package Version: 4be66e5b6582

Remediation Upgrade Recommendation: v0.16.1-0.20231218163308-9d2ee975ef9f

Link To SCA

Reference – NVD link

github-actions[bot] commented 1 month ago

Issue still exists.