CVE-2025-58181
19.11.2025, 21:15
SSH servers parsing GSSAPI authentication requests do not validate the number of mechanisms specified in the request, allowing an attacker to cause unbounded memory consumption.Enginsight
| Vendor | Product | Version |
|---|---|---|
| golang | crypto | 𝑥 < 0.45.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| lxd |
| ||||||||||||||
| golang-go.crypto |
| ||||||||||||||
| snapd |
| ||||||||||||||
| google-guest-agent |
|
Vulnerability Media Exposure