Executive brief
Panic due to malformed XML digital signature in github.com/russellhaering/goxmldsig
Affected products
- Go github.com/russellhaering/goxmldsig
- Go github.com/russellhaering/gosaml2
CVE identifiers
- CVE-2020-7711
- CVE-2020-7731
Junglewise Threat Intelligence
CVE-2020-7711 · Severity: low · CVSS 3.1 · Published 2021-04-14
Technologies: github.com/russellhaering/goxmldsig (Go), github.com/russellhaering/gosaml2 (Go). Vendors: Go.
Panic due to malformed XML digital signature in github.com/russellhaering/goxmldsig