本ページは gohttp_project gohttp に影響する公開済み CVE(NVD の CPE 経由で関連付け)を列挙します。各行に深刻度指標・概要・公開日が含まれます。
| CVE | 概要 | ソース | CVSS 最大値 | EPSS(%) | 公開 | 更新 |
|---|---|---|---|---|---|---|
| CVE-2019-12198 | In GoHttp through 2017-07-25, there is a stack-based buffer over-read via a long User-Agent header. | [email protected] | 7.5 | 1.27% | 2019-05-20 | 2026-06-16 |
| CVE-2019-12160 | GoHTTP through 2017-07-25 has a sendHeader use-after-free. | [email protected] | 9.8 | 1.66% | 2019-05-17 | 2026-06-16 |
| CVE-2019-12159 | GoHTTP through 2017-07-25 has a stack-based buffer over-read in the scan function (when called from getRequestType) via a long URL. | [email protected] | 7.5 | 1.34% | 2019-05-17 | 2026-06-16 |
| CVE-2019-12158 | GoHTTP through 2017-07-25 has a GetExtension heap-based buffer overflow via a long extension. | [email protected] | 9.8 | 1.57% | 2019-05-17 | 2026-06-16 |