CVE-2026-46597
📛 CVE Title
Invoking byte arithmetic causes underflow and panic in golang.org/x/crypto/ssh
Description
An incorrectly placed cast from bytes to int allowed for server-side panic in the AES-GCM packet decoder for well-crafted inputs.
Overview
- State
- PUBLISHED
- Assigner (CNA)
- Go
- CVSS severity
- high
- CVSS score
- 7.5 / 10
- CVSS vector
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H- Effective score
- 7.5 / 10 HIGH source: CNA overview
- MSRC score
- 7.5 / 10 HIGH MS rating: Important
- CWE(s)
-
CWE-191: Integer Underflow (Wrap or Wraparound) - Reserved
- 2026-05-15
- Published
- 2026-05-22 02:31 UTC
- Last updated
- 2026-05-22 14:08 UTC
- Source
- https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/46xxx/CVE-2026-46597.json
- Linked Threat
- CVE-2026-46597 — CVE-2026-46597
NVD triage scoring NVD CVE 2.0
Layer NVD adds on top of the CNA's CVE record — published / last-modified timestamps, exploitability / impact subscores, and the FIRST.org EPSS probability that this CVE will be exploited in the wild in the next 30 days.
- NVD published
- 2026-05-22 04:16:26 UTC
- NVD last modified
- 2026-05-22 04:16:26 UTC
- EPSS score
- 0.0004 (probability of exploitation in next 30 days)
- EPSS percentile
- 12.73% vs all CVEs — higher = more likely to be exploited, as of 2026-05-24
NVD / KEV / EPSS data refreshed 2026-05-25 00:20 UTC. Re-run the 🛰 Backfill from NVD button above to refresh.
European Union Vulnerability Database ENISA EUVD
ENISA's official EU repository for curated vulnerability intelligence. Carries a separate identifier (EUVD-YYYY-NNNN) and frequently exposes an earlier-published description + CVSS than NVD does.
- EUVD ID
-
EUVD-2026-31388 - Assigner
- Go
- Published
- May 22, 2026, 2:31:26 AM
- Updated
- May 22, 2026, 2:08:27 PM
- EUVD base score (CVSS 3.1)
-
7.5 / 10
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H - EUVD-reported EPSS
- 0.0500
- Vendors
- golang.org/x/crypto
- Products
-
golang.org/x/crypto/ssh (0 <0.52.0)
ENISA description: An incorrectly placed cast from bytes to int allowed for server-side panic in the AES-GCM packet decoder for well-crafted inputs.
Microsoft Security Response Center MSRC
Microsoft's vendor-authoritative record from the Security Update Guide — its own CVSS score, impact, severity rating, exploit assessment, and KB-article fixes. Refreshed 2026-07-28 03:00 UTC (source: CVRF).
- MS severity
- Important
- MS CVSS base score
- 7.5 / 10 (temporal 7.5)
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H - Release
- 2026-May
Microsoft remediations / KB articles (2)
- CBL-Mariner Releases — Vendor Fix / Security Update (fixed build 1.12.15-8)
- https://learn.microsoft.com/en-us/azure/azure-linux/tutorial-azure-linux-upgrade — None Available / CBL-Mariner Releases
Affected products (1)
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| golang.org/x/crypto | golang.org/x/crypto/ssh |
0 (affected)
|
— |
Vendor references (4)
References embedded in the original CVE record by the assigning CNA.
Web references (9)
DuckDuckGo results ranked by threat-intel / vendor advisory domains. Generated by the 🔎 Find references (web) button above — same flow as the Remediations search.
- None Available msrc
- MSRC update guide: CVE-2026-46597 msrc
- https://www.first.org/epss/ tenable:www.first.org
- https://groups.google.com/g/golang-announce/c/a082jnz-LvI tenable:groups.google.com
- https://go.dev/issue/79561 tenable:go.dev
- https://nvd.nist.gov/vuln/detail/CVE-2026-46597 tenable:nvd.nist.gov
- https://pkg.go.dev/vuln/GO-2026-5013 tenable:pkg.go.dev
- https://www.cve.org/CVERecord?id=CVE-2026-46597 tenable:www.cve.org
- https://go.dev/cl/781620 tenable:go.dev
NVD-tagged references (4)
Reference list NVD curates from the CNA record, vendor advisories, and third-party reports. The tag chips below are NVD's analyst-assigned categories.
- https://go.dev/cl/781620 security@golang.org
- https://go.dev/issue/79561 security@golang.org
- https://groups.google.com/g/golang-announce/c/a082jnz-LvI security@golang.org
- https://pkg.go.dev/vuln/GO-2026-5013 security@golang.org
Remediations (10)
Remediations are stored against the linked Threat row; the list below is deduplicated across both pages.
-
web:nvd.nist.gov
This is a potential security issue, you are being redirected to https://nvd.nist.gov
2026-05-26 03:00 UTC -
web:securityvulnerability.io
What is CVE-2026-46597 ? The vulnerability arises from an improper casting mechanism in the AES-GCM packet decoder utilized by the Go programming language. This flaw can lead to a server-side panic when processing specifically crafted inputs, potentially disrupting service and impacting overall system integrity.
2026-05-26 03:00 UTC -
web:support.microsoft.com
This update for Windows 11, version 25H2 and 24H2 (KB5084597) incudes security improvements. To learn more about differences between security updates, optional non-security preview updates, out-of-band (OOB) updates, and continuous innovation, see Windows monthly updates explained. For information on Windows update terminology, see the different types of Windows software updates. To view the ...
2026-05-26 03:00 UTC -
web:vulert.com
Learn about CVE-2026-46597 , a vulnerability in the golang.org/x/crypto package that can cause server-side panic. Discover how to fix it and check your application for ...
2026-05-26 03:00 UTC -
web:www.oracle.com
This Critical Patch Update contains 481 new security patches across the product families listed below. Please note that an MOS note summarizing the content of this Critical Patch Update and other Oracle Software Security Assurance activities is located at April 2026 Critical Patch Update: Executive Summary and Analysis.
2026-05-26 03:00 UTC -
web:www.rapid7.com
Microsoft is addressing 67 vulnerabilities this June 2025 Patch Tuesday. Learn more about the findings in this Patch Tuesday.
2026-05-26 03:00 UTC -
web:www.resolvedsecurity.com
What is the Impact of CVE-2026-46597 ? Successful exploitation may allow attackers to cause a server-side panic and crash the affected service, leading to a denial of service for legitimate users. What is the Exploitability of CVE-2026-46597 ? Exploitation involves sending a specifically engineered AES-GCM packet to the vulnerable service.
2026-05-26 03:00 UTC -
web:www.secure.com
Learn the difference between vulnerability remediation and mitigation , and how a risk-based strategy can strengthen your security posture.
2026-05-26 03:00 UTC -
web:www.strongboxit.com
Learn the key differences between vulnerability remediation vs mitigation in cybersecurity. Discover which method is effective for protecting your data.
2026-05-26 03:00 UTC -
web:zecurit.com
Get the complete breakdown of Microsoft's May 2026 Patch Tuesday. We analyze the latest security updates and all critical CVEs .
2026-05-26 03:00 UTC
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.
Raw JSON
The full cvelistV5 record. Download as CVE-2026-46597.json.
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "NETWORK",
"availabilityImpact": "HIGH",
"baseScore": 7.5,
"baseSeverity": "HIGH",
"confidentialityImpact": "NONE",
"integrityImpact": "NONE",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-46597",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "yes"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-05-22T14:08:24.589026Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2026-05-22T14:08:27.674Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"collectionURL": "https://pkg.go.dev",
"defaultStatus": "unaffected",
"packageName": "golang.org/x/crypto/ssh",
"product": "golang.org/x/crypto/ssh",
"programRoutines": [
{
"name": "gcmCipher.readCipherPacket"
},
{
"name": "Dial"
},
{
"name": "NewClientConn"
},
{
"name": "NewServerConn"
},
{
"name": "curve25519sha256.Client"
},
{
"name": "curve25519sha256.Server"
},
{
"name": "dhGEXSHA.Client"
},
{
"name": "dhGEXSHA.Server"
},
{
"name": "dhGroup.Client"
},
{
"name": "dhGroup.Server"
},
{
"name": "ecdh.Client"
},
{
"name": "ecdh.Server"
},
{
"name": "mlkem768WithCurve25519sha256.Client"
},
{
"name": "mlkem768WithCurve25519sha256.Server"
}
],
"vendor": "golang.org/x/crypto",
"versions": [
{
"lessThan": "0.52.0",
"status": "affected",
"version": "0",
"versionType": "semver"
}
]
}
],
"credits": [
{
"lang": "en",
"value": "Maciej Kawka"
}
],
"descriptions": [
{
"lang": "en",
"value": "An incorrectly placed cast from bytes to int allowed for server-side panic in the AES-GCM packet decoder for well-crafted inputs."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "CWE-191: Integer Underflow (Wrap or Wraparound)",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-05-22T02:31:26.754Z",
"orgId": "1bb62c36-49e3-4200-9d77-64a1400537cc",
"shortName": "Go"
},
"references": [
{
"url": "https://go.dev/issue/79561"
},
{
"url": "https://groups.google.com/g/golang-announce/c/a082jnz-LvI"
},
{
"url": "https://go.dev/cl/781620"
},
{
"url": "https://pkg.go.dev/vuln/GO-2026-5013"
}
],
"title": "Invoking byte arithmetic causes underflow and panic in golang.org/x/crypto/ssh"
}
},
"cveMetadata": {
"assignerOrgId": "1bb62c36-49e3-4200-9d77-64a1400537cc",
"assignerShortName": "Go",
"cveId": "CVE-2026-46597",
"datePublished": "2026-05-22T02:31:26.754Z",
"dateReserved": "2026-05-15T17:35:00.813Z",
"dateUpdated": "2026-05-22T14:08:27.674Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}