描述
A flaw was found in github.com/satori/go.uuid in versions from commit 0ef6afb2f6cdd6cdaeee3885a95099c63f18fc8c to d91630c8510268e75203009fe7daf2b8e1d60c45. Due to insecure randomness in the g.rand.Read function the generated UUIDs are predictable for an attacker.
AI分析AI驱动
受影响产品
satoriuuid
-
参考资料
- https://bugzilla.redhat.com/show_bug.cgi?id=1954376Issue TrackingThird Party Advisory
- https://github.com/satori/go.uuid/issues/73Third Party Advisory
- https://snyk.io/vuln/SNYK-GOLANG-GITHUBCOMSATORIGOUUID-72488Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1954376Issue TrackingThird Party Advisory
- https://github.com/satori/go.uuid/issues/73Third Party Advisory
- https://snyk.io/vuln/SNYK-GOLANG-GITHUBCOMSATORIGOUUID-72488Third Party Advisory