CVE Database
/

CVE-2026-39824

Back to search

CVE-2026-39824

Published: May 22, 2026

Modified: May 27, 2026

PUBLISHED

Description

NewNTUnicodeString does not check for string length overflow. When provided with a string that overflows the maximum size of a NTUnicodeString (a 16-bit number of bytes), it returns a truncated string rather than an error.

VendorProductVersions

golang.org/x/sys

golang.org/x/sys/windows

affected
0 - < 0.44.0

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now