Vulnerability GO-2021-0113
Unknown
UNKNOWN RISK
Vulnerabilities without an assigned CVSS score. Severity is not determinable from available data.
5 years ago
October 06, 2021 at 05:51 PM UTC
Out-of-bounds read in golang.org/x/text/language
v0.1.0 - v0.3.6
v0.1.0 - v0.3.6
Summary
Out-of-bounds read in golang.org/x/text/language
Details
Due to improper index calculation, an incorrectly formatted language tag can cause Parse to panic via an out of bounds read. If Parse is used to process untrusted user inputs, this may be used as a vector for a denial of service attack.
References
Related Vulnerabilities
Other vulnerabilities affecting the same packages
Unknown
7 hours ago
Panic parsing crafted input in x/text/secure/precis in golang.org/x/text
v0.1.0 - v0.40.0 GO-2026-6629
v0.1.0 - v0.40.0 GO-2026-6629
Unknown
2 months ago
Infinite loop on invalid input in golang.org/x/text
v0.1.0 - v0.38.0 GO-2026-5970
v0.1.0 - v0.38.0 GO-2026-5970
High Risk
3 years ago
golang.org/x/text/language Out-of-bounds Read vulnerability
v0.1.0 - v0.3.6 GHSA-ppp9-7jff-5vj2
v0.1.0 - v0.3.6 GHSA-ppp9-7jff-5vj2
High Risk
3 years ago
golang.org/x/text/language Denial of service via crafted Accept-Language header
v0.1.0 - v0.3.7 GHSA-69ch-w2m2-3vjp
v0.1.0 - v0.3.7 GHSA-69ch-w2m2-3vjp
Unknown
3 years ago
Denial of service via crafted Accept-Language header in golang.org/x/text/language
v0.1.0 - v0.3.7 GO-2022-1059
v0.1.0 - v0.3.7 GO-2022-1059
Impacted packages
Timeline
Published
5 years ago
October 06, 2021 at 05:51 PM UTC
Last Modified
8 months ago
February 04, 2026 at 02:31 AM UTC