#1142674 golang-golang-x-text: CVE-2026-56852

Package:
src:golang-golang-x-text
Source:
src:golang-golang-x-text
Submitter:
Salvatore Bonaccorso
Date:
2026-08-04 18:01:01 UTC
Severity:
normal
Tags:
#1142674#5
Date:
2026-07-24 06:01:41 UTC
From:
To:
Hi,

The following vulnerability was published for golang-golang-x-text.

CVE-2026-56852[0]:
| A norm.Iter can enter an infinite loop when handling input
| containing invalid UTF-8 bytes.


If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2026-56852
https://www.cve.org/CVERecord?id=CVE-2026-56852
[1] https://github.com/golang/go/issues/80142
[2] https://github.com/golang/text/commit/5ae8e578e495731553eddba11b2d0e86c91a00ce

Please adjust the affected versions in the BTS as needed.

Regards,
Salvatore

#1142674#12
Date:
2026-08-04 17:59:30 UTC
From:
To:
This fixed CVE-2026-56852 / #1142674 .
#1142674#17
Date:
2026-08-04 17:59:30 UTC
From:
To:
This fixed CVE-2026-56852 / #1142674 .