CVE-2026-32952
ADVISORY - githubSummary
A malicious NTLM challenge message can causes an slice out of bounds panic, which can crash any Go process using ntlmssp.Negotiator as an HTTP transport.
Common Weakness Enumeration (CWE)
ADVISORY - github
Integer Overflow or Wraparound
GitHub
CREATED
UPDATED
ADVISORY IDGHSA-pjcq-xvwq-hhpj
EXPLOITABILITY SCORE
3.9
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)