ID | CVE-2020-28366 | ||||||
Sažetak | Code injection in the go command with cgo before Go 1.14.12 and Go 1.15.5 allows arbitrary code execution at build time via a malicious unquoted symbol name in a linked object file. | ||||||
Reference | |||||||
CVSS |
|
||||||
Pristup |
|
||||||
Impact |
|
||||||
CVSS vektor | AV:N/AC:H/Au:N/C:P/I:P/A:P | ||||||
Zadnje važnije ažuriranje | 07-11-2023 - 03:21 | ||||||
Objavljeno | 18-11-2020 - 17:15 |