CVE-2026-46600
N/A
N/A
Summary
Parsing an invalid SVCB or HTTPS RR can panic when the size of a parameter value overflows the message buffer.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| golang.org/x/net | golang.org/x/net/dns/dnsmessage | 0 < 0.56.0 | affected |
Weaknesses
- CWE-125: Out-of-bounds Read
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.