6.5
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Description
The processing time for parsing some invalid inputs scales non-linearly with respect to the size of the input. This affects programs which parse untrusted PEM inputs.
Basic Information
ID
CVE-2025-61723
Source
Go
Published
Oct 29, 2025 at 22:10
Modified
Oct 30, 2025 at 20:35
Affected Product
Vendor
Go standard library
Product
encoding/pem
Affected Versions
Go standard library encoding/pem 0
Go standard library encoding/pem 1.25.0
Go standard library encoding/pem 1.25.0