VDB

GO-2025-4135

GO-2025-4135 PUBLISHED CVSS 8.699999809265137 HIGH

Malformed constraint may cause denial of service in golang.org/x/crypto/ssh/agent

Risk Scores

CVSS 4.0
8.699999809265137
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

Affected Products

VendorProductVersions
chainguardcrossplane-provider-gcp*, *, *
chainguardnrdot-collector-k8s*, *, *
chainguardsrc-fingerprint-fips0, 0, 0
chainguardgrafana-11.5*, *, *
wolfigrype0, 0, 0
chainguardkaf0, 0, 0
wolfineuvector-scanner*, *, *
chainguardgitlab-workhorse-ce-18.6*, *, *
wolfiterraform-docs0, 0, 0
chainguardkube-oidc-proxy*, *, *
golang.orgx/crypto0, 0
wolfidocker-machine-driver-linode0, 0, 0
chainguardrestic0, 0, 0
chainguardcloud-provider-azure-fips-1.27*, *, *
chainguardspire-server0, 0, 0
chainguardsftpgo-plugin-eventsearch0, 0, 0
wolfiguac0, 0, 0
chainguardcadvisor0, 0, 0
chainguardamazon-ssm-agent-fips*, *, *
wolfivelero0, 0, 0

…and 1555 more

Timeline

  • Nov 19, 2025 CVE Published
  • May 15, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›