Skip to content

CVE-2025-58187 #477

@ami-descope

Description

@ami-descope

Describe the bug

Due to the design of the name constraint checking algorithm, the processing time of some inputs scale non-linearly with respect to the size of the certificate. This affects programs which validate arbitrary certificate chains.

fixed in go 1.25.3

To Reproduce

Run Trivy to find vulns

Versions of VictoriaLogs datasource and VictoriaLogs backend

0.22.3

Link to dashboard in Victoria Metrics

No response

Please provide dashboard JSON if it is possible

No response

Additional information

No response

Metadata

Metadata

Assignees

Labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions