TEMP-0000000-1C4729

NameTEMP-0000000-1C4729
Descriptionnet/http: broken trailers don't close a server connection
SourceAutomatically generated temporary name. Not for external reference.

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
golang (PTS)jessie, jessie (lts)2:1.3.3-1+deb8u5vulnerable

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
golangsource(unstable)2:1.4.3-1

Notes

[jessie] - golang <no-dsa> (Minor issue)
[wheezy] - golang <no-dsa> (Minor issue)
https://github.com/golang/go/issues/12027
https://github.com/golang/go/commit/26049f6f9171d1190f3bbe05ec304845cfe6399f
CVE Request: https://www.openwall.com/lists/oss-security/2015/08/06/2
[jessie] - golang <ignored> (Minor issue, request smuggling, net/http server-side, go tooling not impacted, requires rebuilding reverse-dependencies)

Search for package or bug name: Reporting problems