Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2022-27536
HistoryApr 20, 2022 - 10:15 a.m.

CVE-2022-27536

2022-04-2010:15:00
Debian Security Bug Tracker
security-tracker.debian.org
26
cve-2022-27536
crypto/x509
go 1.18.x
tls client panic
remote tls server
macos
malformed certificates

EPSS

0.003

Percentile

66.0%

Certificate.Verify in crypto/x509 in Go 1.18.x before 1.18.1 can be caused to panic on macOS when presented with certain malformed certificates. This allows a remote TLS server to cause a TLS client to panic.

OSVersionArchitecturePackageVersionFilename
Debian999allgolang-1.18< 1.18.10-1golang-1.18_1.18.10-1_all.deb