CVE-2026-42499

EUVD-2026-28432
Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 53.03%
Affected Products (NVD)
VendorProductVersion
golanggo
𝑥
< 1.25.10
golanggo
1.26.0 ≤
𝑥
< 1.26.3
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
Red HatLogging for Red Hat OpenShift 6.2
1784748010 ≤
𝑥
< *
ADP
Red HatLogging for Red Hat OpenShift 6.4
1782405469 ≤
𝑥
< *
ADP
Red HatLogging Subsystem for Red Hat OpenShift 6.0
1785419067 ≤
𝑥
< *
ADP
Red HatOpenShift API for Data Protection 1.3
1785177357 ≤
𝑥
< *
ADP
Red HatOpenShift API for Data Protection 1.6
1784058822 ≤
𝑥
< *
ADP
Red HatRed Hat Advanced Cluster Security 4.9
1783357116 ≤
𝑥
< *
ADP
Red HatRed Hat Advanced Cluster Security for Kubernetes 4.10
1783357140 ≤
𝑥
< *
ADP
Red HatRed Hat Developer Hub 1.10
1783447707 ≤
𝑥
< *
ADP
Red HatRed Hat Developer Hub 1.9
1782767215 ≤
𝑥
< *
ADP
Red HatRed Hat Hardened Images
1.25.10-2.2.hum1 ≤
𝑥
< *
ADP
Red HatRed Hat Hardened Images
1.26.3-2.2.hum1 ≤
𝑥
< *
ADP
Red HatRed Hat Migration Toolkit 1.8
1783953372 ≤
𝑥
< *
ADP
Red HatRed Hat Migration Toolkit for Applications 8.1
1785171639 ≤
𝑥
< *
ADP
Red HatRed Hat Migration Toolkit for Applications 8.2
1784211378 ≤
𝑥
< *
ADP
Red HatRed Hat OpenShift AI 2.25
1783544461 ≤
𝑥
< *
ADP
Red HatRed Hat OpenShift Service Mesh 3.0
1782222217 ≤
𝑥
< *
ADP
Red HatRed Hat OpenShift Service Mesh 3.0
1782223341 ≤
𝑥
< *
ADP
Red HatRed Hat OpenShift Service Mesh 3.0
1782296193 ≤
𝑥
< *
ADP
Red HatRed Hat OpenShift Service Mesh 3.0
1782222607 ≤
𝑥
< *
ADP
Red HatRed Hat OpenShift Service Mesh 3.1
1782222163 ≤
𝑥
< *
ADP
Red HatRed Hat OpenShift Service Mesh 3.1
1782223138 ≤
𝑥
< *
ADP
Red HatRed Hat OpenShift Service Mesh 3.1
1782222394 ≤
𝑥
< *
ADP
Red HatRed Hat OpenShift Service Mesh 3.1
1782222451 ≤
𝑥
< *
ADP
Red HatRed Hat OpenShift Service Mesh 3.2
1782226178 ≤
𝑥
< *
ADP
Red HatRed Hat OpenShift Service Mesh 3.2
1782224487 ≤
𝑥
< *
ADP
Red HatRed Hat OpenShift Service Mesh 3.2
1782303211 ≤
𝑥
< *
ADP
Red HatRed Hat OpenShift Service Mesh 3.2
1782224541 ≤
𝑥
< *
ADP
Red HatRed Hat OpenShift Service Mesh 3.3
1782223045 ≤
𝑥
< *
ADP
Red HatRed Hat OpenShift Service Mesh 3.3
1782222366 ≤
𝑥
< *
ADP
Red HatRed Hat OpenShift Service Mesh 3.3
1782310747 ≤
𝑥
< *
ADP
Red HatRed Hat OpenShift Service Mesh 3.3
1782222038 ≤
𝑥
< *
ADP
Red HatRed Hat Quay 3.1
1783750447 ≤
𝑥
< *
ADP
Red HatRed Hat Quay 3.12
1783751865 ≤
𝑥
< *
ADP
Red HatRed Hat Quay 3.12
1784353904 ≤
𝑥
< *
ADP
Red HatRed Hat Quay 3.15
1784351966 ≤
𝑥
< *
ADP
Red HatRed Hat Quay 3.16
1783955846 ≤
𝑥
< *
ADP
Red HatRed Hat Quay 3.9
1784125838 ≤
𝑥
< *
ADP
Red HatRed Hat Trusted Artifact Signer 1.4
4-1.4.2 ≤
𝑥
< *
ADP
Red HatRed Hat Trusted Artifact Signer 1.4
4-1.4.3 ≤
𝑥
< *
ADP
Debian logo
Debian Releases
Debian Product
Codename
golang-1.15
bullseye
postponed
golang-1.19
bookworm
no-dsa
golang-1.24
trixie
no-dsa
golang-1.25
forky
1.25.12-1
fixed
sid
1.25.12-1
fixed
golang-1.26
forky
1.26.5-1
fixed
sid
1.26.5-1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
golang-1.23
jammy
needs-triage
noble
needs-triage
questing
ignored
resolute
needs-triage
golang-1.24
jammy
needs-triage
noble
needs-triage
questing
ignored
resolute
needs-triage
golang-1.25
jammy
dne
noble
dne
questing
ignored
resolute
needs-triage
golang
jammy
dne
noble
dne
questing
dne
resolute
dne
golang-1.10
bionic
needs-triage
jammy
dne
noble
dne
questing
dne
resolute
dne
trusty
needs-triage
xenial
needs-triage
golang-1.13
bionic
needs-triage
focal
needs-triage
jammy
needs-triage
noble
dne
questing
dne
resolute
dne
xenial
ignored
golang-1.14
focal
needs-triage
jammy
dne
noble
dne
questing
dne
resolute
dne
golang-1.16
bionic
needs-triage
focal
needs-triage
jammy
dne
noble
dne
questing
dne
resolute
dne
golang-1.17
jammy
needs-triage
noble
dne
questing
dne
resolute
dne
golang-1.18
bionic
needs-triage
focal
needs-triage
jammy
needs-triage
noble
dne
questing
dne
resolute
dne
xenial
ignored
golang-1.20
focal
needs-triage
jammy
needs-triage
noble
dne
questing
dne
resolute
dne
golang-1.21
focal
needs-triage
jammy
needs-triage
noble
needs-triage
questing
dne
resolute
dne
golang-1.22
focal
needs-triage
jammy
needs-triage
noble
needs-triage
questing
dne
resolute
dne
golang-1.6
jammy
dne
noble
dne
questing
dne
resolute
dne
xenial
needs-triage
golang-1.8
bionic
needs-triage
jammy
dne
noble
dne
questing
dne
resolute
dne
golang-1.9
bionic
needs-triage
jammy
dne
noble
dne
questing
dne
resolute
dne
Amazon Linux logo
Amazon Linux Releases
Amazon Package
Release
amazon-cloudwatch-agent
Amazon Linux 2
0:1.300066.2-2.amzn2
fixed
Amazon Linux 2023
0:1.300066.2-2.amzn2023
fixed
amazon-ecr-credential-helper
Amazon Linux 2023
0:0.12.0-3.amzn2023
fixed
captree
Amazon Linux 2023
0:2.73-1.amzn2023.0.7
fixed
captree-debuginfo
Amazon Linux 2023
0:2.73-1.amzn2023.0.7
fixed
cni-plugins
Amazon Linux 2
0:1.7.1-1.amzn2.0.6
fixed
Amazon Linux 2023
0:1.7.1-1.amzn2023.0.6
fixed
cni-plugins-debuginfo
Amazon Linux 2
0:1.7.1-1.amzn2.0.6
fixed
Amazon Linux 2023
0:1.7.1-1.amzn2023.0.6
fixed
cni-plugins-debugsource
Amazon Linux 2023
0:1.7.1-1.amzn2023.0.6
fixed
compat-golang-github-cpuguy83-md2man-2-devel
Amazon Linux 2023
0:2.0.2-24.amzn2023.0.7
fixed
containerd
Amazon Linux 2023
0:2.2.3-1.amzn2023.0.2
fixed
containerd-debuginfo
Amazon Linux 2023
0:2.2.3-1.amzn2023.0.2
fixed
containerd-debugsource
Amazon Linux 2023
0:2.2.3-1.amzn2023.0.2
fixed
containerd-stress
Amazon Linux 2023
0:2.2.3-1.amzn2023.0.2
fixed
containerd-stress-debuginfo
Amazon Linux 2023
0:2.2.3-1.amzn2023.0.2
fixed
credentials-fetcher
Amazon Linux 2023
0:2.0.1-1.amzn2023.0.5
fixed
cri-tools
Amazon Linux 2
0:1.32.0-1.amzn2.0.6
fixed
cri-tools-debuginfo
Amazon Linux 2
0:1.32.0-1.amzn2.0.6
fixed
docker
Amazon Linux 2023
0:25.0.14-1.amzn2023.0.6
fixed
docker-debuginfo
Amazon Linux 2023
0:25.0.14-1.amzn2023.0.6
fixed
docker-debugsource
Amazon Linux 2023
0:25.0.14-1.amzn2023.0.6
fixed
ecs-init
Amazon Linux 2023
0:1.103.2-1.amzn2023
fixed
git-lfs
Amazon Linux 2023
0:3.7.1-80.amzn2023
fixed
git-lfs-debuginfo
Amazon Linux 2023
0:3.7.1-80.amzn2023
fixed
git-lfs-debugsource
Amazon Linux 2023
0:3.7.1-80.amzn2023
fixed
golang
Amazon Linux 2
0:1.25.10-1.amzn2.0.1
fixed
Amazon Linux 2023
0:1.25.10-1.amzn2023.0.1
fixed
golang-bin
Amazon Linux 2
0:1.25.10-1.amzn2.0.1
fixed
Amazon Linux 2023
0:1.25.10-1.amzn2023.0.1
fixed
golang-docs
Amazon Linux 2
0:1.25.10-1.amzn2.0.1
fixed
Amazon Linux 2023
0:1.25.10-1.amzn2023.0.1
fixed
golang-github-burntsushi-toml
Amazon Linux 2023
0:1.5.0-1.amzn2023.0.1
fixed
golang-github-burntsushi-toml-debuginfo
Amazon Linux 2023
0:1.5.0-1.amzn2023.0.1
fixed
golang-github-burntsushi-toml-debugsource
Amazon Linux 2023
0:1.5.0-1.amzn2023.0.1
fixed
golang-github-burntsushi-toml-devel
Amazon Linux 2023
0:1.5.0-1.amzn2023.0.1
fixed
golang-github-burntsushi-toml-test
Amazon Linux 2023
0:0.2.0-8.amzn2023.0.3
fixed
golang-github-burntsushi-toml-test-debuginfo
Amazon Linux 2023
0:0.2.0-8.amzn2023.0.3
fixed
golang-github-burntsushi-toml-test-debugsource
Amazon Linux 2023
0:0.2.0-8.amzn2023.0.3
fixed
golang-github-burntsushi-toml-test-devel
Amazon Linux 2023
0:0.2.0-8.amzn2023.0.3
fixed
golang-github-cpuguy83-md2man
Amazon Linux 2023
0:2.0.2-24.amzn2023.0.7
fixed
golang-github-cpuguy83-md2man-debuginfo
Amazon Linux 2023
0:2.0.2-24.amzn2023.0.7
fixed
golang-github-cpuguy83-md2man-debugsource
Amazon Linux 2023
0:2.0.2-24.amzn2023.0.7
fixed
golang-github-cpuguy83-md2man-devel
Amazon Linux 2023
0:2.0.2-24.amzn2023.0.7
fixed
golang-misc
Amazon Linux 2
0:1.25.10-1.amzn2.0.1
fixed
Amazon Linux 2023
0:1.25.10-1.amzn2023.0.1
fixed
golang-shared
Amazon Linux 2
0:1.25.10-1.amzn2.0.1
fixed
Amazon Linux 2023
0:1.25.10-1.amzn2023.0.1
fixed
golang-src
Amazon Linux 2
0:1.25.10-1.amzn2.0.1
fixed
Amazon Linux 2023
0:1.25.10-1.amzn2023.0.1
fixed
golang-tests
Amazon Linux 2
0:1.25.10-1.amzn2.0.1
fixed
Amazon Linux 2023
0:1.25.10-1.amzn2023.0.1
fixed
golist
Amazon Linux 2
0:0.10.1-10.amzn2.0.13
fixed
Amazon Linux 2023
0:0.10.4-12.amzn2023.0.9
fixed
golist-debuginfo
Amazon Linux 2
0:0.10.1-10.amzn2.0.13
fixed
Amazon Linux 2023
0:0.10.4-12.amzn2023.0.9
fixed
golist-debugsource
Amazon Linux 2023
0:0.10.4-12.amzn2023.0.9
fixed
libcap
Amazon Linux 2023
0:2.73-1.amzn2023.0.7
fixed
libcap-debuginfo
Amazon Linux 2023
0:2.73-1.amzn2023.0.7
fixed
libcap-debugsource
Amazon Linux 2023
0:2.73-1.amzn2023.0.7
fixed
libcap-devel
Amazon Linux 2023
0:2.73-1.amzn2023.0.7
fixed
libcap-static
Amazon Linux 2023
0:2.73-1.amzn2023.0.7
fixed
nerdctl
Amazon Linux 2
0:2.2.2-1.amzn2.0.2
fixed
Amazon Linux 2023
0:2.2.2-1.amzn2023.0.2
fixed
nerdctl-debuginfo
Amazon Linux 2
0:2.2.2-1.amzn2.0.2
fixed
oci-add-hooks
Amazon Linux 2023
0:0-0.1.20200504git268e3bb.amzn2023.0.11
fixed
oci-add-hooks-debuginfo
Amazon Linux 2023
0:0-0.1.20200504git268e3bb.amzn2023.0.11
fixed
oci-add-hooks-debugsource
Amazon Linux 2023
0:0-0.1.20200504git268e3bb.amzn2023.0.11
fixed
rclone
Amazon Linux 2
0:1.55.1-1.amzn2.0.6
fixed
Amazon Linux 2023
0:1.73.5-76.amzn2023
fixed
rclone-debuginfo
Amazon Linux 2
0:1.55.1-1.amzn2.0.6
fixed
Amazon Linux 2023
0:1.73.5-76.amzn2023
fixed
rclone-debugsource
Amazon Linux 2023
0:1.73.5-76.amzn2023
fixed
runc
Amazon Linux 2023
0:1.3.4-5.amzn2023.0.2
fixed
runc-debuginfo
Amazon Linux 2023
0:1.3.4-5.amzn2023.0.2
fixed
runc-debugsource
Amazon Linux 2023
0:1.3.4-5.amzn2023.0.2
fixed
runfinch-finch
Amazon Linux 2023
0:1.17.0-1.amzn2023.0.2
fixed
soci-snapshotter
Amazon Linux 2023
0:0.13.0-1.amzn2023.0.3
fixed
yq
Amazon Linux 2023
0:4.47.1-13.amzn2023
fixed
yq-debuginfo
Amazon Linux 2023
0:4.47.1-13.amzn2023
fixed
yq-debugsource
Amazon Linux 2023
0:4.47.1-13.amzn2023
fixed
References