THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-39829 (HIGH 7.5) — The RSA and DSA public key parsers did not enforce size limits on key parameters. A crafted public key with an excessively large modulus or DSA parameter could cause several minutes of CPU consumption during signature verification. This could be triggered by unauthenticated clien

[NVD] CVE-2026-39829 (HIGH 7.5) — The RSA and DSA public key parsers did not enforce size limits on key parameters. A crafted public key with an excessively large modulus or DSA parameter could cause several minutes of CPU consumption during signature verification. This could be triggered by unauthenticated clien

lownvdPublished 2026-05-22

CVE-2026-39829 CVSS: 7.5 HIGH Published: 2026-05-22T04:16:22.310

The RSA and DSA public key parsers did not enforce size limits on key parameters. A crafted public key with an excessively large modulus or DSA parameter could cause several minutes of CPU consumption during signature verification. This could be triggered by unauthenticated clients during public key authentication. RSA moduli are no

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-39829