vulnerability

Huawei EulerOS: CVE-2025-58189: golang security update

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Published
Feb 2, 2026
Added
Feb 3, 2026
Modified
Feb 3, 2026

Description

When Conn.Handshake fails during ALPN negotiation the error contains attacker controlled information (the ALPN protocols sent by the client) which is not escaped.

Solutions

huawei-euleros-2_0_sp13-upgrade-golanghuawei-euleros-2_0_sp13-upgrade-golang-develhuawei-euleros-2_0_sp13-upgrade-golang-help
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.