云虫漏洞情报

CVE-2026-39830 - A malicious SSH peer could send unsolicited global request responses to fill an internal buffer, blocking the connection's read loop. The blocked goroutine could not be released by calling Close(), resulting in a resource leak per connection. Unsolicited global responses are now discarded. - 漏洞详情

漏洞编号:CVE-2026-39830

风险等级:危急

漏洞来源:CVE

CVE 编号:CVE-2026-39830

CNNVD 编号:-

厂商/产品:golang / crypto

影响范围:cpe:2.3:a:golang:crypto:*:*:*:*:*:go:*:*

CWE:CWE-119

发布/更新时间:2026-05-22 / 2026-08-28

漏洞描述

A malicious SSH peer could send unsolicited global request responses to fill an internal buffer, blocking the connection's read loop. The blocked goroutine could not be released by calling Close(), resulting in a resource leak per connection. Unsolicited global responses are now discarded.

相关链接

相关漏洞

« 返回首页