Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-f6x5-jh6r-wrfv | golang.org/x/crypto/ssh/agent vulnerable to panic if message is malformed due to out of bounds read |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 11 Dec 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:golang:crypto:*:*:*:*:*:go:*:* |
Fri, 21 Nov 2025 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Golang
Golang crypto Golang ssh |
|
| Vendors & Products |
Golang
Golang crypto Golang ssh |
Thu, 20 Nov 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | CVE-2025-47914 in golang.org/x/crypto/ssh/agent | Malformed constraint may cause denial of service in golang.org/x/crypto/ssh/agent |
Wed, 19 Nov 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-125 | |
| Metrics |
cvssV3_1
|
Wed, 19 Nov 2025 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SSH Agent servers do not validate the size of messages when processing new identity requests, which may cause the program to panic if the message is malformed due to an out of bounds read. | |
| Title | CVE-2025-47914 in golang.org/x/crypto/ssh/agent | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Go
Published:
Updated: 2025-11-20T17:15:00.344Z
Reserved: 2025-05-13T23:31:29.597Z
Link: CVE-2025-47914
Updated: 2025-11-19T20:50:22.359Z
Status : Analyzed
Published: 2025-11-19T21:15:50.517
Modified: 2025-12-11T19:36:41.373
Link: CVE-2025-47914
No data.
OpenCVE Enrichment
Updated: 2025-11-21T09:16:08Z
Github GHSA