Report: CVE-2026-39827 - Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/cry

Report: CVE-2026-39827 - Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/cry

CVE ID :CVE-2026-39827 Published : May 22, 2026, 4:16 a.m. | 59 minutes ago Description :An authenticated SSH client that repeatedly opened channels which were rejected by the server caused unbounded memory growth, eventually crashing the server process and affecting all connected users. Rejected channels are now properly removed from the connection's internal state and released for garbage collection. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Published
May 22, 2026