Unrated severityNVD Advisory· Published Oct 29, 2025· Updated Nov 20, 2025
Quadratic complexity when checking name constraints in crypto/x509
CVE-2025-58187
Description
Due to the design of the name constraint checking algorithm, the processing time of some inputs scale non-linearly with respect to the size of the certificate. This affects programs which validate arbitrary certificate chains.
Affected products
1- Go standard library/crypto/x509v5Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4News mentions
0No linked articles in our index yet.