Multiple CVEs Affecting Go's math/big Package Identified
First seen 18 Feb 2026, 13:23 UTC
•
•46
Export
Article Content
Browse articles
Two vulnerabilities in Go's math/big package have been reported. CVE-2021-33198, published on August 2, 2021, can cause a panic for large exponents in the SetString or UnmarshalText methods. CVE-2022-23772, published on February 11, 2022, involves an overflow that may lead to uncontrolled memory consumption in the Rat.SetString method.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Timeline
2021-08-02
CVE-2021-33198 published
2022-02-11
CVE-2022-23772 published
2026-02-18
Articles published regarding both CVEs
More articles in this cluster
Continue Reading
Critical Authorization Vulnerability in SiYuan (CVE-2026-66012)
PATCHCORD Malware Targets Afghan Telecom and South Asian Infrastructure
North Korean ClickFake Campaign Targets Web3 Professionals with RATs
Dell PowerFlex Security Updates Address Multiple Vulnerabilities
Gogs Vulnerability Allows Remote Code Execution via Path Traversal
SUSE and openSUSE Azure Storage AzCopy Security Update Addresses Critical Vulnerabilities