High severity7.5NVD Advisory· Published Oct 5, 2017· Updated May 13, 2026
CVE-2017-1000097
CVE-2017-1000097
Description
On Darwin, user's trust preferences for root certificates were not honored. If the user had a root certificate loaded in their Keychain that was explicitly not trusted, a Go program would still verify a connection using that root certificate.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- github.com/golang/go/issues/18141nvdIssue TrackingThird Party Advisory
- go-review.googlesource.com/c/33721/nvdBroken Link
- groups.google.com/forum/nvd
News mentions
0No linked articles in our index yet.