Memory Exhaustion Vulnerabilities in Net/HTTP and ASN.1 Encoding
First seen 18 Feb 2026, 12:23 UTC
•
•39
Export
Article Content
Browse articles
Two vulnerabilities, CVE-2025-58185 and CVE-2025-58186, were published on October 29, 2025. CVE-2025-58185 affects the parsing of DER payloads in encoding/asn1, while CVE-2025-58186 involves a lack of limit when parsing cookies in net/http, both leading to potential memory exhaustion. Affected systems may experience performance issues due to these vulnerabilities.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Timeline
2025-10-29
CVE-2025-58185 and CVE-2025-58186 published
2026-02-18
Articles published detailing the vulnerabilities
More articles in this cluster
Continue Reading
Google Addresses Unreported Chrome Zero-Day Vulnerability
Google Addresses Eighth Chrome Zero-Day Vulnerability in 2025
Apple Fixes Zero-Day Vulnerability in Software Update
Cisco Fixes Critical AsyncOS Vulnerability Under Attack
CISA Directs Agencies to Address Gogs RCE Vulnerability Exploited in Zero-Day Attacks
Cisco Addresses AsyncOS Zero-Day Exploited by Threat Actors