CVE-2015-8618 PUBLISHED CVSS 5 MEDIUM

The Int.Exp Montgomery code in the math/big library in Go 1.5.x before 1.5.3 mishandles carry propagation and produces incorrect output, which makes it easier for attackers to obtain private RSA keys via unspecified vectors.

EPSS 0.74% · 72.7th percentile

Risk Scores

CVSS v2.0
5
EPSS Score
0.74%
72.7th percentile

Affected Products

VendorProductVersions
n/an/an/a
opensuseleap42.1
golanggo1.5.1, 1.5, 1.5.2

Timeline

References

Open in Interactive Console →