Skip to content

path/filepath: stack exhaustion in Glob #53416

Closed
@julieqiu

Description

@julieqiu

Calling Glob on a path which contains a large number of path separators can cause a panic due to stack exhaustion.

Thanks to Juho Nurminen of Mattermost for reporting this issue.

This is CVE-2022-30632.

(This was a PRIVATE issue tracked in b/226945200 and fixed by http://tg/1498176.)

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    Status

    Done

    Milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions