x/vulndb: potential Go vuln in github.com/onosproject/onos-lib-go: GHSA-jrqj-6vq2-7r63 #3526
Labels
high priority
triaged
waiting
the issue is waiting for additional information from an external source
Advisory GHSA-jrqj-6vq2-7r63 references a vulnerability in the following Go modules:
Description:
Open Networking Foundation SD-RAN ONOS onos-lib-go 0.10.28 allows an index out-of-range panic in asn1/aper GetBitString via a zero value of numBits.
References:
No existing reports found with this module or alias.
See doc/quickstart.md for instructions on how to triage this report.
The text was updated successfully, but these errors were encountered: