Security Advisory

CVE-2026-33810

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-04-08 01:06:56
Last updated 2026-04-20 17:23:21
Assigner Go
State PUBLISHED

Description

When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to wildcard DNS SANs which use a different case than the constraint. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.