SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil.
References
Configurations
History
No history.
Information
Published : 2026-05-22 04:16
Updated : 2026-09-11 13:17
NVD link : CVE-2026-39835
Mitre link : CVE-2026-39835
CVE.ORG link : CVE-2026-39835
JSON object : View
Products Affected
golang
- crypto
