CVE-2021-33198
Summary
| CVE | CVE-2021-33198 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-08-02 19:15:00 UTC |
| Updated | 2022-09-14 21:11:00 UTC |
| Description | In Go before 1.15.13 and 1.16.x before 1.16.5, there can be a panic for a large exponent to the math/big.Rat SetString or UnmarshalText method. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Go 1.16.5 and Go 1.15.13 are released | MISC | groups.google.com | |
| Go: Multiple Vulnerabilities (GLSA 202208-02) — Gentoo security | GENTOO | security.gentoo.org | |
| golang-announce - Google Groups | MISC | groups.google.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 160277 Oracle Enterprise Linux Security Update for skopeo (ELSA-2022-7955)
- 160285 Oracle Enterprise Linux Security Update for buildah (ELSA-2022-8008)
- 179539 Debian Security Update for golang-1.15 (CVE-2021-33198)
- 239537 Red Hat Update for OpenShift Container Platform 4.8.4 (RHSA-2021:2984)
- 239555 Red Hat Update for OpenShift Container Platform 4.6.42 (RHSA-2021:3009)
- 239606 Red Hat Update for OpenShift Container Platform 4.8.9 packages (RHSA-2021:3248)
- 239641 Red Hat Update for Red Hat OpenStack Platform 16.2 (etcd) (RHSA-2021:3487)
- 239694 Red Hat Update for OpenShift Container Platform 4.8.15 packages and (RHSA-2021:3820)
- 239803 Red Hat Update for go-toolset:rhel8 security (RHSA-2021:4156)
- 239942 Red Hat Update for OpenStack Platform 16.1 (RHSA-2021:5072)
- 239945 Red Hat Update for OpenStack Platform 16.1
- 239948 Red Hat Update for OpenStack Platform 16.1
- 239951 Red Hat Update for OpenStack Platform 16.1
- 239956 Red Hat Update for OpenStack Platform 16.1
- 239957 Red Hat Update for OpenStack Platform 16.1
- 240894 Red Hat Update for buildah (RHSA-2022:8008)
- 240920 Red Hat Update for skopeo (RHSA-2022:7955)
- 352808 Amazon Linux Security Advisory for golang: ALAS-2021-1527
- 354041 Amazon Linux Security Advisory for golang : ALAS2-2022-1830
- 378883 Splunk Enterprise August Third Party Package Updates (SVD-2023-0808)
- 501570 Alpine Linux Security Update for go
- 501859 Alpine Linux Security Update for go
- 670823 EulerOS Security Update for golang (EulerOS-SA-2021-2710)
- 670953 EulerOS Security Update for golang (EulerOS-SA-2021-2685)
- 671038 EulerOS Security Update for golang (EulerOS-SA-2021-2661)
- 690115 Free Berkeley Software Distribution (FreeBSD) Security Update for go (079b3641-c4bd-11eb-a22a-693f0544ae52)
- 710584 Gentoo Linux Go Multiple Vulnerabilities (GLSA 202208-02)
- 750736 OpenSUSE Security Update for go1.15 (openSUSE-SU-2021:2214-1)
- 750739 OpenSUSE Security Update for go1.15 (openSUSE-SU-2021:0950-1)
- 750743 SUSE Enterprise Linux Security Update for go1.15 (SUSE-SU-2021:2214-1)
- 750749 OpenSUSE Security Update for go1.16 (openSUSE-SU-2021:2186-1)
- 770069 Red Hat OpenShift Container Platform 4.6 Security Update (RHSA-2021:3009)
- 770070 Red Hat OpenShift Container Platform 4.8 Security Update (RHSA-2021:2984)
- 770078 Red Hat OpenShift Container Platform 4.8 Security Update (RHSA-2021:3248)
- 770082 Red Hat OpenShift Container Platform 4.8 Security Update (RHSA-2021:3820)
- 770090 Red Hat OpenShift Container Platform 4.8 Security Update (RHSA-2021-3820)
- 770102 Red Hat OpenShift Container Platform 4.8 Security Update (RHSA-2021-3248)
- 770106 Red Hat OpenShift Container Platform 4.8 Security Update (RHSA-2021-2984)
- 770119 Red Hat OpenShift Container Platform 4.6 Security Update (RHSA-2021-3009)
- 940216 AlmaLinux Security Update for go-toolset:rhel8 (ALSA-2021:4156)
- 940827 AlmaLinux Security Update for buildah (ALSA-2022:8008)
- 940833 AlmaLinux Security Update for skopeo (ALSA-2022:7955)
- 960743 Rocky Linux Security Update for go-toolset:rhel8 (RLSA-2021:4156)