Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
CVE-2020-28362
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2020-28362
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-28362.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2020-28362
Aliases
BIT-golang-2020-28362
GO-2021-0069
Downstream
DEBIAN-CVE-2020-28362
RHBA-2021:0482
RHSA-2020:5333
RHSA-2020:5493
RHSA-2020:5634
RHSA-2021:0038
RHSA-2021:0145
RHSA-2021:0172
RHSA-2021:0706
RHSA-2021:0956
RHSA-2021:1366
RHSA-2021:1551
RHSA-2021:2042
SUSE-SU-2020:3368-1
SUSE-SU-2020:3369-1
UBUNTU-CVE-2020-28362
openSUSE-SU-2020:2047-1
openSUSE-SU-2020:2067-1
openSUSE-SU-2020:2139-1
openSUSE-SU-2024:10807-1
openSUSE-SU-2024:10808-1
Related
SUSE-SU-2020:3368-1
SUSE-SU-2020:3369-1
openSUSE-SU-2020:2047-1
openSUSE-SU-2020:2067-1
openSUSE-SU-2020:2139-1
openSUSE-SU-2024:10807-1
openSUSE-SU-2024:10808-1
Published
2020-11-18T17:15:11Z
Modified
2025-09-24T10:27:37.523569Z
Severity
7.5 (High)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS Calculator
Summary
[none]
Details
Go before 1.14.12 and 1.15.x before 1.15.4 allows Denial of Service.
References
https://groups.google.com/g/golang-nuts/c/c-ssaaS7RMI
https://security.netapp.com/advisory/ntap-20201202-0004/
https://www.arista.com/en/support/advisories-notices/security-advisories/12166-security-advisory-62
https://lists.apache.org/thread.html/rd02e75766cd333a0df417588460f5e4477060633000bfe94955851fd%40%3Cissues.trafficcontrol.apache.org%3E
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2W4COUPL3YVTZ6RTEIT6LPBDJUFF3VSP/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/F3ZSHGNTJWCWYAKY5OLZS2XQQYHSXSUO/
Affected packages
Git
/
github.com/golang/go
Affected ranges
Type
GIT
Repo
https://github.com/golang/go
Events
Introduced
0
Unknown introduced commit / All previous commits are affected
Fixed
bc9c580409b61af6b29f0cbd9d45bec63dbe2ccb
Affected versions
go1.*
go1.10beta1
go1.10beta2
go1.10rc1
go1.10rc2
go1.11beta1
go1.11beta2
go1.11beta3
go1.12beta1
go1.12beta2
go1.13beta1
go1.14
go1.14.1
go1.14.10
go1.14.11
go1.14.2
go1.14.3
go1.14.4
go1.14.5
go1.14.6
go1.14.7
go1.14.8
go1.14.9
go1.14beta1
go1.14rc1
go1.3beta1
go1.3beta2
go1.4beta1
go1.5beta1
go1.5beta2
go1.5beta3
go1.6beta1
go1.6beta2
go1.7beta1
go1.7beta2
go1.7rc1
go1.7rc2
go1.7rc3
go1.7rc4
go1.8beta1
go1.8beta2
go1.9beta1
go1.9beta2
release.*
release.r56
Other
weekly
weekly.*
weekly.2009-11-06
weekly.2009-11-10
weekly.2009-11-10.1
weekly.2009-11-12
weekly.2009-11-17
weekly.2009-12-07
weekly.2009-12-09
weekly.2009-12-22
weekly.2010-01-05
weekly.2010-01-13
weekly.2010-01-27
weekly.2010-02-04
weekly.2010-02-17
weekly.2010-02-23
weekly.2010-03-04
weekly.2010-03-15
weekly.2010-03-22
weekly.2010-03-30
weekly.2010-04-13
weekly.2010-04-27
weekly.2010-05-04
weekly.2010-05-27
weekly.2010-06-09
weekly.2010-06-21
weekly.2010-07-01
weekly.2010-07-14
weekly.2010-07-29
weekly.2010-08-04
weekly.2010-08-11
weekly.2010-08-25
weekly.2010-09-06
weekly.2010-09-15
weekly.2010-09-22
weekly.2010-09-29
weekly.2010-10-13
weekly.2010-10-13.1
weekly.2010-10-20
weekly.2010-10-27
weekly.2010-11-02
weekly.2010-11-10
weekly.2010-11-23
weekly.2010-12-02
weekly.2010-12-08
weekly.2010-12-15
weekly.2010-12-15.1
weekly.2010-12-22
weekly.2011-01-06
weekly.2011-01-12
weekly.2011-01-19
weekly.2011-01-20
weekly.2011-02-01
weekly.2011-02-01.1
weekly.2011-02-15
weekly.2011-02-24
weekly.2011-03-07
weekly.2011-03-07.1
weekly.2011-03-15
weekly.2011-03-28
weekly.2011-04-04
weekly.2011-04-13
weekly.2011-04-27
weekly.2011-05-22
weekly.2011-06-02
weekly.2011-06-09
weekly.2011-06-16
weekly.2011-06-23
weekly.2011-07-07
weekly.2011-07-19
weekly.2011-07-29
weekly.2011-08-10
weekly.2011-08-17
weekly.2011-09-01
weekly.2011-09-07
weekly.2011-09-16
weekly.2011-09-21
weekly.2011-10-06
weekly.2011-10-18
weekly.2011-10-25
weekly.2011-10-26
weekly.2011-11-01
weekly.2011-11-02
weekly.2011-11-08
weekly.2011-11-09
weekly.2011-11-18
weekly.2011-12-01
weekly.2011-12-02
weekly.2011-12-06
weekly.2011-12-14
weekly.2011-12-22
weekly.2012-01-15
weekly.2012-01-20
weekly.2012-01-27
weekly.2012-02-07
weekly.2012-02-14
weekly.2012-02-22
weekly.2012-03-04
weekly.2012-03-13
weekly.2012-03-22
weekly.2012-03-27
CVE-2020-28362 - OSV