Launch Week Day 1: Announcing Security Design Review
UNKNOWN Go

Panic when validating certificates with DSA public keys in crypto/x509

GO-2025-4013 · BIT-golang-2025-58188 · CVE-2025-58188

Published · Modified

Description

Validating certificate chains which contain DSA public keys can cause programs to panic, due to a interface cast that assumes they implement the Equal method.

This affects programs which validate arbitrary certificate chains.

Ready to move

Start Securing

Free, no credit card | First findings in minutes