Security Advisory
CVE-2020-28851
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
In x/text in Go 1.15.4, an "index out of range" panic occurs in language.ParseAcceptLanguage while parsing the -u- extension. (x/text/language is supposed to be able to parse an HTTP Accept-Language header.)