Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.
Reconnecting to live updates…
EPSS 0.6%top 54%

Red Hat Security Advisory: golang-github-openprinting-ipp-usb security update

0
High
Published: 07/06/2026 (07/06/2026, 03:20:26 UTC)
Source: GCVE Database
Vendor/Project: Red Hat Product Security
Product: Red Hat

Description

HTTP reverse proxy, backed by IPP-over-USB connection to device. It enables driverless support for USB devices capable of using IPP-over-USB protocol. Security Fix(es): * net: golang: Go net package: Denial of Service via long CNAME response in LookupCNAME (CVE-2026-33811) * crypto/x509: golang: golang crypto/x509: Denial of Service via excessive processing of DNS SAN entries (CVE-2026-27145) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Affected software

Affected versions
=0=1.26.0-0<1.25.11>=1.26.0-0 <1.26.4=1.7.2<1.8.14-r1<0.1.8-r3Red HatRed Hat Enterprise LinuxRed Hat Enterprise Linux AppStream (v. 10)srcgolang-github-openprinting-ipp-usb-0:0.9.27-7.el10_2.2.srcexternal secrets operator for Red Hat OpenShiftexternal secrets operator for Red Hat OpenShift 1.1amd64registry.redhat.io/external-secrets-operator/external-secrets-rhel9@sha256:d9cb4c7d68769f943bed8b84299e2d4df5ca209cad85bf0ff44ab80e8fe822c9_amd64Red Hat Trusted Artifact SignerRed Hat Trusted Artifact Signer 1.4amd64_darwinconforma-cli-stack-v1-4@amd64_darwinRed Hat Web TerminalRed Hat Web Terminal 1.11registry.redhat.io/web-terminal/web-terminal-exec-rhel9@sha256:79f71e67817f8f200639d5b5f4677a7fe12a6f747e8723967c7591cebf777018_amd6401.26.0-0Red Hat Web Terminal 1.13registry.redhat.io/web-terminal/web-terminal-exec-rhel9@sha256:a6cb6402795d9d9ea0e1b68edcaf59ee008b18b00f91a54aa6686993d47a2a77_amd64aarch64go-toolset-0:1.26.4-1.el10_2.aarch64Red Hat Enterprise Linux AppStream (v. 9)go-toolset-0:1.26.4-1.el9_8.aarch64Red Hat Enterprise Linux AppStream (v. 8)delve-0:1.26.1-1.module+el8.10.0+24516+40554724.src::go-toolset:rhel8rhc-1:0.3.8-6.el10_2.srcRed Hat Enterprise Linux CodeReady Linux Builder (v. 10)Red Hat Enterprise Linux CodeReady Linux Builder (v. 9)Red Hat OpenShift Service MeshRed Hat OpenShift Service Mesh 3.2registry.redhat.io/openshift-service-mesh/istio-sail-operator-bundle@sha256:997b065714e98e5542db75dbbd3399719c13a302d8b3da9eb5b85600cb920bfc_amd64s390xrhc-1:0.2.5-9.el8_10.s390xgo-fdo-client-0:1.0.0-4.el10_2.5.srcgo-fdo-server-0:1.0.1-2.el10_2.3.srcRed Hat Web Terminal 1.15registry.redhat.io/web-terminal/web-terminal-exec-rhel9@sha256:d1b0f8f0884aff5087d6c4d0c8a08b1e3952ff58ab91c15d4d6432dcdcf3de08_amd64Red Hat OpenShift Service Mesh 3.0registry.redhat.io/openshift-service-mesh/istio-sail-operator-bundle@sha256:d78a3d9a4719160ff763ba5da4dcacec0724e3772f9e4e8923b73f1d6bd0c501_amd64rhc-worker-playbook-0:0.2.10-1.el10_2.srcMulticluster Global HubMulticluster Global Hub 1.7.0registry.redhat.io/multicluster-globalhub/multicluster-globalhub-grafana-rhel9@sha256:45c1f1d1a4a678691502a2924783ea2fe8ac3db24673d8226b431c99ffa8ce8a_amd64Red Hat OpenShift Service Mesh 3.1registry.redhat.io/openshift-service-mesh/istio-sail-operator-bundle@sha256:f9b3bf5727289419610d6c3dbfb019a914f7b1d680822ee05725f4225b2cfdac_amd64Red Hat Web Terminal 1.14registry.redhat.io/web-terminal/web-terminal-exec-rhel9@sha256:f75d0e6a4629dbfc1ef62aab71892de395e7bd133cb81ae7f9c2a4a618374595_amd64Red Hat OpenShift Service Mesh 3.3registry.redhat.io/openshift-service-mesh/istio-sail-operator-bundle@sha256:ed441b7161d15b4f1b1e5fba0b7e7c10fced1de39ff17b18cf4ffa552235e6b1_amd64registry.redhat.io/multicluster-globalhub/multicluster-globalhub-grafana-rhel9@sha256:36257adc197f85246a68818e474c1fafae6ba1fe0be3f07b16c790fadc5324fb_amd64MicrosoftAzure Linux3.0Azure Linux 3.0golangRed Hat OpenShift Service Mesh 3.4registry.redhat.io/openshift-service-mesh/istio-sail-operator-bundle@sha256:d962ab210306e10800af7c36800d3fe5f624827635fd5a611969fc9c254552bf_amd64

AI-Powered Analysis

Machine-generated threat intelligence

AILast updated: 08/13/2026, 20:09:32 UTC

Technical Analysis

This advisory covers a denial of service vulnerability (CVE-2026-27145) in the golang crypto/x509 package caused by excessive processing of DNS Subject Alternative Name (SAN) entries. The issue can lead to denial of service conditions. The vulnerability affects Go versions prior to 1.26.4 and is addressed by updating to version 1.26.4 or later. The Red Hat advisory also references a related denial of service vulnerability in the net package (CVE-2026-33811). The update is available for Red Hat Enterprise Linux 10 and associated toolsets and products that bundle the affected Go packages.

Potential Impact

The vulnerability allows an attacker to cause denial of service by triggering excessive processing of DNS SAN entries in the crypto/x509 package. This can lead to resource exhaustion or application unavailability. There is no indication of confidentiality or integrity impact. No known exploits in the wild have been reported.

Mitigation Recommendations

An official fix is available from Red Hat. Users should apply the security update that upgrades golang packages to version 1.26.4 or later as provided in Red Hat Enterprise Linux 10 updates. Refer to Red Hat advisory RHSA-2026:35832 for detailed update instructions. No additional mitigation steps are required beyond applying the vendor-provided patch.

Pro Console: star threats, build custom feeds, automate alerts via Slack, email & webhooks.Upgrade to Pro

Technical Details

Data Version
5.2
Assigner Short Name
Go
Date Reserved
2026-02-17T19:57:28.435Z
Cvss Version
null
State
PUBLISHED
Remediation Level
null
Gcve Source
db.gcve.eu

Threat ID: 6a1f872ae29bf47b5044bf1a

Added to database: 06/03/2026, 01:45:14 UTC

Last enriched: 08/13/2026, 20:09:32 UTC

Last updated: 09/04/2026, 14:23:07 UTC

Views: 218

Community Reviews

0 reviews

Crowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.

Sort by
Loading community insights…

Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.

Actions

PRO

Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.

Please log in to the Console to use AI analysis features.

External Links

NVD DatabaseMITRE CVEhttps://access.redhat.com/errata/RHSA-2026:35832https://access.redhat.com/security/updates/classification/#important24678222484207Canonical URLhttps://access.redhat.com/errata/RHSA-2026:47149https://access.redhat.com/security/cve/CVE-2026-27145https://access.redhat.com/security/cve/CVE-2026-33376https://access.redhat.com/security/cve/CVE-2026-33377https://access.redhat.com/security/cve/CVE-2026-33811https://access.redhat.com/security/cve/CVE-2026-39821https://access.redhat.com/security/cve/CVE-2026-42151https://access.redhat.com/security/cve/CVE-2026-42154https://access.redhat.com/security/cve/CVE-2026-43870https://access.redhat.com/security/cve/CVE-2026-46384https://access.redhat.com/security/cve/CVE-2026-46385https://access.redhat.com/security/cve/CVE-2026-53488https://access.redhat.com/security/cve/CVE-2026-53492https://access.redhat.com/security/cve/CVE-2026-55677https://access.redhat.com/security/updates/classification/Canonical URLhttps://access.redhat.com/errata/RHSA-2026:42049https://access.redhat.com/security/cve/CVE-2026-32280https://access.redhat.com/security/cve/CVE-2026-32281https://access.redhat.com/security/cve/CVE-2026-32282https://access.redhat.com/security/cve/CVE-2026-33186https://access.redhat.com/security/cve/CVE-2026-33810https://access.redhat.com/security/cve/CVE-2026-42504https://redhat.atlassian.net/browse/WTO-398https://redhat.atlassian.net/browse/WTO-405https://redhat.atlassian.net/browse/WTO-410https://redhat.atlassian.net/browse/WTO-416https://redhat.atlassian.net/browse/WTO-421https://redhat.atlassian.net/browse/WTO-427https://redhat.atlassian.net/browse/WTO-432https://redhat.atlassian.net/browse/WTO-445https://redhat.atlassian.net/browse/WTO-454https://access.redhat.com/errata/RHSA-2026:42051https://redhat.atlassian.net/browse/WTO-397https://redhat.atlassian.net/browse/WTO-404https://redhat.atlassian.net/browse/WTO-409https://redhat.atlassian.net/browse/WTO-415https://redhat.atlassian.net/browse/WTO-420https://redhat.atlassian.net/browse/WTO-425https://redhat.atlassian.net/browse/WTO-431https://redhat.atlassian.net/browse/WTO-449https://redhat.atlassian.net/browse/WTO-455Reference 48Reference 49Reference 50Reference 51Reference 52Reference 53Reference 54Reference 55Reference 56Reference 57Reference 58Reference 59Reference 60Reference 61Reference 62Reference 63Reference 64Reference 65Reference 66Reference 67Reference 68Reference 69Reference 70Reference 71Reference 72Reference 73Reference 74Reference 75Reference 76Reference 77Reference 78Reference 79Reference 80Reference 81Reference 82Reference 83Reference 84Reference 85Reference 86Reference 87https://access.redhat.com/documentation/en-us/red_hat_trusted_artifact_signer/1.4https://access.redhat.com/documentation/en-us/red_hat_trusted_artifact_signer/1.4/html-single/release_notes/indexhttps://access.redhat.com/security/cve/CVE-2026-39820https://access.redhat.com/security/cve/CVE-2026-39828https://access.redhat.com/security/cve/CVE-2026-39829https://access.redhat.com/security/cve/CVE-2026-39830https://access.redhat.com/security/cve/CVE-2026-39832https://access.redhat.com/security/cve/CVE-2026-39833https://access.redhat.com/security/cve/CVE-2026-39835https://access.redhat.com/security/cve/CVE-2026-42499https://access.redhat.com/security/cve/CVE-2026-42508https://access.redhat.com/security/cve/CVE-2026-46595Canonical URLhttps://redhat.atlassian.net/browse/WTO-401https://redhat.atlassian.net/browse/WTO-406https://redhat.atlassian.net/browse/WTO-412https://redhat.atlassian.net/browse/WTO-417https://redhat.atlassian.net/browse/WTO-424https://redhat.atlassian.net/browse/WTO-430https://redhat.atlassian.net/browse/WTO-444https://redhat.atlassian.net/browse/WTO-453Canonical URL2480756Canonical URLRHEL-1934782498152Canonical URLhttps://access.redhat.com/security/updates/classification/#moderate2484205RHEL-183347Canonical URLRHEL-183350Canonical URLhttps://access.redhat.com/errata/RHSA-2026:37276Canonical URLReference 123Reference 124Reference 125Reference 126Reference 127Reference 128Reference 129Reference 130https://access.redhat.com/errata/RHSA-2026:48771Canonical URLCanonical URLCanonical URLCanonical URLhttps://access.redhat.com/errata/RHSA-2026:49767Canonical URLhttps://redhat.atlassian.net/browse/WTO-403https://redhat.atlassian.net/browse/WTO-408https://redhat.atlassian.net/browse/WTO-414https://redhat.atlassian.net/browse/WTO-419https://redhat.atlassian.net/browse/WTO-428https://redhat.atlassian.net/browse/WTO-434https://redhat.atlassian.net/browse/WTO-446https://redhat.atlassian.net/browse/WTO-452Canonical URLhttps://access.redhat.com/errata/RHSA-2026:50888Canonical URLhttps://access.redhat.com/security/cve/CVE-2026-47204https://access.redhat.com/security/cve/CVE-2026-47221https://access.redhat.com/security/cve/CVE-2026-48042https://access.redhat.com/security/cve/CVE-2026-48044https://access.redhat.com/security/cve/CVE-2026-48706https://access.redhat.com/security/cve/CVE-2026-48743Canonical URLRHEL-208712Canonical URLCanonical URLCanonical URLCanonical URLCanonical URLCanonical URLCanonical URLReference 164Reference 165https://access.redhat.com/errata/RHSA-2026:51057https://access.redhat.com/security/cve/CVE-2026-41567https://access.redhat.com/security/cve/CVE-2026-42306Canonical URLhttps://access.redhat.com/errata/RHSA-2026:54525https://access.redhat.com/security/cve/CVE-2026-44740https://access.redhat.com/security/cve/CVE-2026-56852https://docs.redhat.com/en/documentation/openshift_container_platform/latest/html/security_and_compliance/external-secrets-operator-for-red-hat-openshiftCanonical URLhttps://access.redhat.com/errata/RHSA-2026:54168Canonical URLReference 177Reference 178Reference 179Reference 180Reference 181Reference 182Reference 183Reference 184Reference 185Reference 186Reference 187Reference 188Reference 189Reference 190Reference 191Reference 192https://access.redhat.com/security/cve/CVE-2026-55969https://access.redhat.com/security/cve/CVE-2026-66801Canonical URLCanonical URLCanonical URLCanonical URLCanonical URLCanonical URLCanonical URLCanonical URLhttps://access.redhat.com/errata/RHSA-2026:55899https://access.redhat.com/security/cve/CVE-2026-39836https://redhat.atlassian.net/browse/WTO-438https://redhat.atlassian.net/browse/WTO-447Canonical URLReference 208Reference 209Reference 210Reference 211Reference 212Reference 213Reference 214Reference 215Reference 216Reference 217Reference 218246780924678102467811246781324678152467820246782324678252467826Canonical URLhttps://access.redhat.com/errata/RHSA-2026:60315Canonical URLhttps://access.redhat.com/errata/RHSA-2026:60354Canonical URLReference 233Reference 234Reference 235Reference 236Reference 237Reference 238Reference 239Reference 240Reference 241CVE-2026-27145 Inefficient candidate hostname parsing in crypto/x509 - VEXMicrosoft Support LifecycleCommon Vulnerability Scoring SystemReference 245Reference 246Search on Google

Need more coverage?

Upgrade to Pro Console for AI refresh and higher limits.

For incident response and remediation, OffSeq services can help resolve threats faster.

Latest Threats

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses