CVE-2019-9634 (NVD)

2019-03-08

Go through 1.12 on Windows misuses certain LoadLibrary functionality, leading to DLL injection.

Products Go
Type Uncontrolled Search Path Element (CWE-427)
First patch - None (likely due to unavailable code)
Patches https://github.com/golang/go/issues/30642
Links http://www.openwall.com/lists/oss-security/2019/04/09/1
http://www.securityfocus.com/bid/107450