Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-39824

Опубликовано: 22 мая 2026
Источник: debian
EPSS Низкий

Описание

NewNTUnicodeString does not check for string length overflow. When provided with a string that overflows the maximum size of a NTUnicodeString (a 16-bit number of bytes), it returns a truncated string rather than an error.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
golang-golang-x-sysnot-affectedpackage

Примечания

  • https://groups.google.com/g/golang-announce/c/6MMI8Lj-Atg

  • https://github.com/golang/go/issues/78916

EPSS

Процентиль: 2%
0.00114
Низкий

Связанные уязвимости

CVSS3: 3.3
ubuntu
3 месяца назад

NewNTUnicodeString does not check for string length overflow. When provided with a string that overflows the maximum size of a NTUnicodeString (a 16-bit number of bytes), it returns a truncated string rather than an error.

CVSS3: 3.3
nvd
3 месяца назад

NewNTUnicodeString does not check for string length overflow. When provided with a string that overflows the maximum size of a NTUnicodeString (a 16-bit number of bytes), it returns a truncated string rather than an error.

CVSS3: 3.3
msrc
2 месяца назад

Invoking integer overflow in NewNTUnicodeString in golang.org/x/sys/windows

suse-cvrf
9 дней назад

Security update for keybase-client

CVSS3: 3.3
github
2 месяца назад

NewNTUnicodeString does not check for string length overflow. When provided with a string that overflows the maximum size of a NTUnicodeString (a 16-bit number of bytes), it returns a truncated string rather than an error.

EPSS

Процентиль: 2%
0.00114
Низкий