Bug 2480680 (CVE-2026-39835) - CVE-2026-39835 golang.org/x/crypto/ssh: golang: golang.org/x/crypto/ssh: Denial of Service via crafted SSH certificate
Summary: CVE-2026-39835 golang.org/x/crypto/ssh: golang: golang.org/x/crypto/ssh: Deni...
Keywords:
Status: NEW
Alias: CVE-2026-39835
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
high
high
Target Milestone: ---
Assignee: Product Security DevOps Team
QA Contact:
URL:
Whiteboard:
Depends On: 2493462 2493463 2493465 2493466 2493467 2493468 2493469 2493470 2493472 2493474 2493475 2493476 2493477 2493478 2493480 2493485 2493486 2493487 2493488 2493489 2493490 2493492 2493493 2493494 2493495 2493496 2493497 2493498 2493499 2493501 2493502 2493503 2493505 2493506 2493507 2493508 2493509 2493510 2493511 2493512 2493513 2493514 2493515 2493516 2493517 2493518 2493519 2493520 2493522 2493524 2493528 2493530 2493531 2493532 2493533 2493534 2493535 2493538 2493540 2493541 2493542 2493546 2493547 2493550 2493551 2493552 2493554 2493556 2493464 2493471 2493473 2493479 2493481 2493482 2493483 2493484 2493491 2493500 2493504 2493521 2493523 2493525 2493526 2493527 2493529 2493536 2493537 2493539 2493543 2493544 2493545 2493548 2493549 2493553
Blocks:
TreeView+ depends on / blocked
 
Reported: 2026-05-22 04:01 UTC by OSIDB Bzimport
Modified: 2026-07-23 15:40 UTC (History)
120 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHSA-2026:36199 0 None None None 2026-07-07 13:00:12 UTC
Red Hat Product Errata RHSA-2026:36796 0 None None None 2026-07-08 15:51:03 UTC
Red Hat Product Errata RHSA-2026:37072 0 None None None 2026-07-09 05:14:31 UTC
Red Hat Product Errata RHSA-2026:37123 0 None None None 2026-07-09 07:15:42 UTC
Red Hat Product Errata RHSA-2026:37410 0 None None None 2026-07-09 18:37:45 UTC
Red Hat Product Errata RHSA-2026:38504 0 None None None 2026-07-13 08:29:05 UTC
Red Hat Product Errata RHSA-2026:41019 0 None None None 2026-07-16 14:32:18 UTC

Description OSIDB Bzimport 2026-05-22 04:01:49 UTC
SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil.

Comment 1 errata-xmlrpc 2026-07-07 13:00:06 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 10

Via RHSA-2026:36199 https://access.redhat.com/errata/RHSA-2026:36199

Comment 2 errata-xmlrpc 2026-07-08 15:50:56 UTC
This issue has been addressed in the following products:

  RHEM 1.0 for RHEL 9

Via RHSA-2026:36796 https://access.redhat.com/errata/RHSA-2026:36796

Comment 3 errata-xmlrpc 2026-07-09 05:14:25 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 10

Via RHSA-2026:37072 https://access.redhat.com/errata/RHSA-2026:37072

Comment 4 errata-xmlrpc 2026-07-09 07:15:35 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9

Via RHSA-2026:37123 https://access.redhat.com/errata/RHSA-2026:37123

Comment 5 errata-xmlrpc 2026-07-09 18:37:39 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9

Via RHSA-2026:37410 https://access.redhat.com/errata/RHSA-2026:37410

Comment 6 errata-xmlrpc 2026-07-13 08:28:58 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2026:38504 https://access.redhat.com/errata/RHSA-2026:38504

Comment 7 errata-xmlrpc 2026-07-16 14:32:12 UTC
This issue has been addressed in the following products:

  RHEM 1.1 for RHEL 10
  RHEM 1.1 for RHEL 9

Via RHSA-2026:41019 https://access.redhat.com/errata/RHSA-2026:41019


Note You need to log in before you can comment on or make changes to this bug.