Description
Previously, a revoked 'SignatureKey' belonging to a CA was not correctly checked for revocation. Now, both the 'key' and 'key.SignatureKey' are checked for @revoked.
Published: 2026-05-22
Score: 9.1 Critical
EPSS: 7.3% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The flaw lies in the golang.org/x/crypto/ssh/knownhosts package where a revoked “SignatureKey” of a certificate authority was not properly verified against its “@revoked” status. As a result, the library could accept a key whose signature key was revoked. This allows a host key verification bypass that undermines the authentication step of an SSH client.

Affected Systems

Any Go application that relies on the golang.org/x/crypto/ssh/knownhosts library for SSH host key validation and is running a pre‑fix version of the library is affected. The vulnerability applies to all releases before the patch that introduced revocation checks for both the key and its signature key. No specific version numbers are provided, so all older library builds should be considered at risk.

Risk and Exploitability

The CVSS score of 9.1 indicates a high severity, while an EPSS score of 7% suggests a moderate probability of exploitation. The likely attack vector is remote: an attacker would need to supply a revoked CA key to the SSH client’s host key verification flow. The vulnerability is not listed in CISA’s KEV catalog.

Generated by OpenCVE AI on August 25, 2026 at 01:51 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade the golang.org/x/crypto package to a release that implements revocation checks for both key and key.SignatureKey
  • Ensure that the application employs the official knownhosts verification routine and does not use custom host‑key checking code that might skip revocation checks
  • If an upgrade cannot be performed immediately, consider disabling host key verification for non‑critical connections or enforcing strict known‑hosts policies to reduce the risk of accepting revoked keys

Generated by OpenCVE AI on August 25, 2026 at 01:51 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Github GHSA Github GHSA GHSA-5cgq-3rg8-m6cv golang.org/x/crypto vulnerable to auth bypass via unenforced @revoked status
Ubuntu USN Ubuntu USN USN-8447-2 LXD vulnerabilities
References
Link Providers
https://access.redhat.com/errata/RHSA-2026:23262 cve-icon
https://access.redhat.com/errata/RHSA-2026:23264 cve-icon
https://access.redhat.com/errata/RHSA-2026:26546 cve-icon
https://access.redhat.com/errata/RHSA-2026:26547 cve-icon
https://access.redhat.com/errata/RHSA-2026:35833 cve-icon
https://access.redhat.com/errata/RHSA-2026:36648 cve-icon
https://access.redhat.com/errata/RHSA-2026:36651 cve-icon
https://access.redhat.com/errata/RHSA-2026:36796 cve-icon
https://access.redhat.com/errata/RHSA-2026:36797 cve-icon
https://access.redhat.com/errata/RHSA-2026:36808 cve-icon
https://access.redhat.com/errata/RHSA-2026:37072 cve-icon
https://access.redhat.com/errata/RHSA-2026:37123 cve-icon
https://access.redhat.com/errata/RHSA-2026:37387 cve-icon
https://access.redhat.com/errata/RHSA-2026:40118 cve-icon
https://access.redhat.com/errata/RHSA-2026:40262 cve-icon
https://access.redhat.com/errata/RHSA-2026:40945 cve-icon
https://access.redhat.com/errata/RHSA-2026:41019 cve-icon
https://access.redhat.com/errata/RHSA-2026:41031 cve-icon
https://access.redhat.com/errata/RHSA-2026:41036 cve-icon
https://access.redhat.com/errata/RHSA-2026:41064 cve-icon
https://access.redhat.com/errata/RHSA-2026:41066 cve-icon
https://access.redhat.com/errata/RHSA-2026:42146 cve-icon
https://access.redhat.com/errata/RHSA-2026:42796 cve-icon
https://access.redhat.com/errata/RHSA-2026:43052 cve-icon
https://access.redhat.com/errata/RHSA-2026:43692 cve-icon
https://access.redhat.com/errata/RHSA-2026:46885 cve-icon
https://access.redhat.com/errata/RHSA-2026:47735 cve-icon
https://access.redhat.com/errata/RHSA-2026:47737 cve-icon
https://access.redhat.com/errata/RHSA-2026:49944 cve-icon
https://access.redhat.com/errata/RHSA-2026:51033 cve-icon
https://access.redhat.com/errata/RHSA-2026:51288 cve-icon
https://access.redhat.com/errata/RHSA-2026:52857 cve-icon
https://access.redhat.com/errata/RHSA-2026:52910 cve-icon
https://access.redhat.com/errata/RHSA-2026:54400 cve-icon
https://access.redhat.com/errata/RHSA-2026:57194 cve-icon
https://access.redhat.com/errata/RHSA-2026:59467 cve-icon
https://access.redhat.com/errata/RHSA-2026:60520 cve-icon
https://access.redhat.com/errata/RHSA-2026:61314 cve-icon
https://access.redhat.com/security/cve/CVE-2026-42508 cve-icon
https://bugzilla.redhat.com/show_bug.cgi?id=2480688 cve-icon
https://go.dev/cl/781220 cve-icon cve-icon
https://go.dev/issue/79568 cve-icon cve-icon
https://groups.google.com/g/golang-announce/c/a082jnz-LvI cve-icon cve-icon
https://pkg.go.dev/vuln/GO-2026-5021 cve-icon cve-icon
https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-42508.json cve-icon
History

Mon, 31 Aug 2026 13:30:00 +0000

Type Values Removed Values Added
References

Fri, 28 Aug 2026 16:30:00 +0000

Type Values Removed Values Added
References

Wed, 26 Aug 2026 15:45:00 +0000

Type Values Removed Values Added
References

Tue, 25 Aug 2026 00:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-665

Thu, 20 Aug 2026 13:30:00 +0000

Type Values Removed Values Added
References

Thu, 13 Aug 2026 13:30:00 +0000

Type Values Removed Values Added
References

Tue, 11 Aug 2026 16:00:00 +0000


Thu, 28 May 2026 15:00:00 +0000

Type Values Removed Values Added
First Time appeared Golang crypto
Weaknesses CWE-295
CPEs cpe:2.3:a:golang:crypto:*:*:*:*:*:go:*:*
Vendors & Products Golang crypto

Fri, 22 May 2026 22:45:00 +0000

Type Values Removed Values Added
Weaknesses CWE-665

Fri, 22 May 2026 21:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-640

Fri, 22 May 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 9.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 22 May 2026 13:15:00 +0000

Type Values Removed Values Added
First Time appeared Golang
Golang ssh
Vendors & Products Golang
Golang ssh

Fri, 22 May 2026 04:45:00 +0000

Type Values Removed Values Added
Weaknesses CWE-640

Fri, 22 May 2026 03:30:00 +0000

Type Values Removed Values Added
Description Previously, a revoked 'SignatureKey' belonging to a CA was not correctly checked for revocation. Now, both the 'key' and 'key.SignatureKey' are checked for @revoked.
Title Invoking auth bypass via unenforced @revoked status in golang.org/x/crypto/ssh/knownhosts
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Go

Published:

Updated: 2026-09-01T12:04:49.091Z

Reserved: 2026-04-28T00:21:12.792Z

Link: CVE-2026-42508

cve-icon Vulnrichment

Updated: 2026-08-31T12:04:30.792Z

cve-icon NVD

Status : Modified

Published: 2026-05-22T04:16:25.440

Modified: 2026-09-01T13:19:28.063

Link: CVE-2026-42508

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-25T02:00:17Z

Weaknesses
  • CWE-295

    Improper Certificate Validation