City
Epaper

CERT-In finds multiple bugs in 'Golang Go' that affect IBM's data management software

By IANS | Updated: June 22, 2024 21:55 IST

New Delhi, June 22 The Indian Computer Emergency Response Team (CERT-In), which comes under the Ministry of Electronics ...

Open in App

New Delhi, June 22 The Indian Computer Emergency Response Team (CERT-In), which comes under the Ministry of Electronics & Information Technology, has warned users of multiple vulnerabilities in the 'Golang Go' programming language affecting IBM Storage Copy Data Management software.

As per the CERT-In advisory, the multiple vulnerabilities -- 'arbitrary code execution vulnerability' and 'denial of service vulnerability' -- could allow an attacker to execute arbitrary code or cause a denial of service condition on the targeted system.

The arbitrary code execution vulnerability exists in IBM software due to a flaw in Golang Go during the build on Darwin.

"An attacker could exploit this vulnerability by building a specially crafted Go module. Successful exploitation of this vulnerability could allow an attacker to execute arbitrary code on the targeted system," the cyber agency said.

On the other hand, the denial of service vulnerability exists in IBM Storage Copy Data Management due to a flaw in Golang Go which causes high CPU usage in the 'extractExtendedRCode' function in the net module.

"A remote attacker could exploit this vulnerability by sending a specially crafted DNS message in response to a query," the advisory mentioned.

Successful exploitation of this vulnerability could allow an attacker to cause a denial of service condition on the targeted system.

CERT-In has suggested users apply appropriate fix/patches as recommended by the company.

Disclaimer: This post has been auto-published from an agency feed without any modifications to the text and has not been reviewed by an editor

Open in App

Related Stories

Other SportsIPL 2025: Rain has final say as KKR, PBKS share points in abandoned clash at Eden Gardens

NationalRoad rage case: K’taka HC restrains police from initiating coercive action against IAF wing commander

FootballFC Goa strike late to pip Punjab to Kalinga Super Cup semis

CricketKolkata Knight Riders vs Punjab Kings IPL 2025 Match Washed Out Due to Rain

NationalBihar: Senior IAS officer KK Pathak relieved, set to join Central govt

Technology Realted Stories

TechnologyIndia sees robust 10.35 pc annual growth in domestic airline passengers in FY25

TechnologyIDFC FIRST Bank posts nearly 60 pc net profit loss at Rs 295.6 crore in Q4 FY25

TechnologyScreening for both active and dormant TB infection key to improve detection: Study

TechnologyMinister Ashish Sood outlines plan to make Delhi a 'credible medical destination'

TechnologyComponent PLI a key milestone in India's electronics manufacturing ecosystem: Industry