VYPR
Unrated severityNVD Advisory· Published Oct 29, 2025· Updated Nov 20, 2025

Quadratic complexity when checking name constraints in crypto/x509

CVE-2025-58187

Description

Due to the design of the name constraint checking algorithm, the processing time of some inputs scale non-linearly with respect to the size of the certificate. This affects programs which validate arbitrary certificate chains.

Affected products

1
  • Go standard library/crypto/x509v5
    Range: 0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.