在 golang.org/x/image/vp8l 模块中,VP8L 解码器在处理包含大量未使用的霍夫曼树组(Huffman tree groups)的精心构造的 VP8L 图像时,可能分配过量内存。攻击者可利用此漏洞通过耗尽系统内存引发远程拒绝服务(DoS)。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| golang.org/x/image | golang.org/x/image/vp8l | < 0.45.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| golang.org/x/image | golang.org/x/image/vp8l | 0 ~ 0.45.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet