关键漏洞信息 问题标题: quic-go 0.50.0 crashes #4981 状态: Closed 报告日期: Mar 13 关闭日期: Mar 21 版本: v0.51 milestone 相关CVE: CVE-2025-29785 错误描述 错误类型: panic: runtime error: invalid memory address or nil pointer dereference 信号: SIGSEGV: segmentation violation code=0x1 addr=0x785dd2 pc=0x785dd2 堆栈跟踪: - goroutine 139654190 [running] - github.com/quic-go/quic-go/internal/ackhandler.(packet).outstanding(...) - /root/go/pkg/mod/github.com/quic-go/quic-go@v0.50.0/internal/ackhandler/packet.go:29 - github.com/quic-go/quic-go/internal/ackhandler.(sentPacketHistory).Remove(0xc0598815f0?, 0xc6a080?) - /root/go/pkg/mod/github.com/quic-go/quic-go@v0.50.0/internal/ackhandler/sent_packet_history.go:126 +0x72 - github.com/quic-go/quic-go/internal/ackhandler.(sentPacketHandler).detectLossPathProbes(0xc0263f9880, {0xc000d33 - /root/go/pkg/mod/github.com/quic-go/quic-go@v0.50.0/internal/ackhandler/sent_packet_handler.go:661 +0x194 - github.com/quic-go/quic-go/internal/ackhandler.(sentPacketHandler).onLossDetectionTimeout(0xc0263f9880, {0xf7f1a - /root/go/pkg/mod/github.com/quic-go/quic-go@v0.50.0/internal/ackhandler/sent_packet_handler.go:736 +0xa5 - github.com/quic-go/quic-go.(connection).run(0xc01136780) - /root/go/pkg/mod/github.com/quic-go/quic-go@v0.50.0/connection.go:621 +0x878 - created by github.com/quic-go/quic-go.(baseServer).handleInitialImpl in goroutine 42 - /root/go/pkg/mod/github.com/quic-go/quic-go@v0.50.0/server.go:745 +0xd4d 解决措施 修复提交: ackhandler: fix panic in probe packet tracking logic #4998 参与者: thuc98, marten-seemann