HomeDefault status
unaffected
Any version before 0.44.0
affected
Description
NewNTUnicodeString does not check for string length overflow. When provided with a string that overflows the maximum size of a NTUnicodeString (a 16-bit number of bytes), it returns a truncated string rather than an error.
Problem types
CWE-190: Integer Overflow or Wraparound
Product status
Any version before 0.44.0
References
groups.google.com/g/golang-announce/c/6MMI8Lj-Atg