{"id":"CVE-2026-56862","aliases":[],"url":"https://o3.security/vulnerability/CVE-2026-56862","summary":"Limit handshake messages we are willing to accept post-handshake in crypto/tls","details":"Handshake messages, such as KeyUpdate, are always considered as state-advancing, regardless of whether a handshake has been completed or not. As a result, a malicious client can keep sending KeyUpdate messages to force the server to keep performing key derivation operations indefinitely.","published":"2026-08-13T21:43:54Z","modified":"2026-08-14T15:42:06.998246220Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[{"ecosystem":"Go","name":"stdlib","fixedVersion":"1.25.13"}],"fix":null,"references":[{"type":"REPORT","url":"https://go.dev/issue/80528"},{"type":"FIX","url":"https://go.dev/cl/804261"},{"type":"WEB","url":"https://groups.google.com/g/golang-announce/c/94pEornpRlI"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-14T15:42:06.998246220Z"}}