CVE-2021-3538
9.8CRITICALA flaw was found in github.com/satori/go.uuid in versions from commit 0ef6afb2f6cdd6cdaeee3885a95099c63f18fc8c to d91630c8510268e75203009fe7daf2b8e1d60c45. Due to insecure randomness in the g.rand.Rea
Publicado: 6/2/2021Atualizado: 11/21/2024
Descrição
A flaw was found in github.com/satori/go.uuid in versions from commit 0ef6afb2f6cdd6cdaeee3885a95099c63f18fc8c to d91630c8510268e75203009fe7daf2b8e1d60c45. Due to insecure randomness in the g.rand.Read function the generated UUIDs are predictable for an attacker.
Análise IADesenvolvido por IA
Produtos Afetados
satoriuuid
-
Referências
- https://bugzilla.redhat.com/show_bug.cgi?id=1954376Issue TrackingThird Party Advisory
- https://github.com/satori/go.uuid/issues/73Third Party Advisory
- https://snyk.io/vuln/SNYK-GOLANG-GITHUBCOMSATORIGOUUID-72488Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1954376Issue TrackingThird Party Advisory
- https://github.com/satori/go.uuid/issues/73Third Party Advisory
- https://snyk.io/vuln/SNYK-GOLANG-GITHUBCOMSATORIGOUUID-72488Third Party Advisory