High severity7.5NVD Advisory· Published Jan 2, 2021· Updated Jun 17, 2026
CVE-2020-28851
CVE-2020-28851
Description
In x/text in Go 1.15.4, an "index out of range" panic occurs in language.ParseAcceptLanguage while parsing the -u- extension. (x/text/language is supposed to be able to parse an HTTP Accept-Language header.)
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
11- osv-coords8 versionspkg:rpm/almalinux/podman-testspkg:rpm/almalinux/podman-pluginspkg:rpm/almalinux/podman-dockerpkg:rpm/almalinux/git-lfspkg:bitnami/golangpkg:rpm/almalinux/podman-remotepkg:rpm/almalinux/podmanpkg:rpm/almalinux/podman-gvproxy
< 2:4.2.0-3.el9+ 7 more
- (no CPE)range: < 2:4.2.0-3.el9
- (no CPE)range: < 2:4.2.0-3.el9
- (no CPE)range: < 2:4.2.0-3.el9
- (no CPE)range: < 2.13.3-3.el8_6
- (no CPE)range: >= 1.15.4, < 1.15.5
- (no CPE)range: < 2:4.2.0-3.el9
- (no CPE)range: < 2:4.2.0-3.el9
- (no CPE)range: < 2:4.2.0-3.el9
Patches
Vulnerability mechanics
References
2- github.com/golang/go/issues/42535nvdExploitIssue TrackingThird Party Advisory
- security.netapp.com/advisory/ntap-20210212-0004/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.