Skip to content

crypto/x509: certificate validation bypass on Windows 10 #36834

Closed
@katiehockman

Description

@katiehockman

A Windows vulnerability allows attackers to spoof valid certificate chains when the system root store is in use. This issue is tracking a mitigation for Go applications, but it’s strongly recommended that affected users install the Windows security update to protect their system.

This issue is CVE-2020-0601.

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions