QID 997622
Date Published: 2024-03-06
QID 997622: GO (Go) Security Update for github.com/jackc/pgproto3 (GHSA-7jwh-3vrq-q3m8)
SQL injection can occur if an attacker can cause a single query or bind message to exceed 4 GB in size. An integer overflow in the calculated message size can cause the one large message to be sent as multiple messages under the attacker's control.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-7jwh-3vrq-q3m8 for updates and patch information.
Vendor References
- GHSA-7jwh-3vrq-q3m8 -
github.com/advisories/GHSA-7jwh-3vrq-q3m8
CVEs related to QID 997622
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-7jwh-3vrq-q3m8 | github.com/jackc/pgproto3 |
|