Back to search
CVE-2021-3538
Published: Jun 2, 2021
Modified: Aug 3, 2024
PUBLISHED
Description
A flaw was found in github.com/satori/go.uuid in versions from commit 0ef6afb2f6cdd6cdaeee3885a95099c63f18fc8c to d91630c8510268e75203009fe7daf2b8e1d60c45. Due to insecure randomness in the g.rand.Read function the generated UUIDs are predictable for an attacker.
| Vendor | Product | Versions |
|---|---|---|
n/a | satori/go.uuid | affected All satori/go.uuid versions from commit 0ef6afb2f6cdd6cdaeee3885a95099c63f18fc8c to d91630c8510268e75203009fe7daf2b8e1d60c45 |
Weaknesses (CWE)
References
https://bugzilla.redhat.com/show_bug.cgi?id=1954376
x_refsource_MISC
https://github.com/satori/go.uuid/issues/73
x_refsource_MISC
https://snyk.io/vuln/SNYK-GOLANG-GITHUBCOMSATORIGOUUID-72488
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now