HomeDefault status
unaffected
Any version before 0.52.0
affected
Description
For certain crafted inputs, a 'ed25519.PrivateKey' was created by casting malformed wire bytes, leading to a panic when used.
Problem types
CWE-129: Improper Validation of Array Index
Product status
Any version before 0.52.0
Credits
NCC Group Cryptography Services, sponsored by Teleport
References
groups.google.com/g/golang-announce/c/a082jnz-LvI