Previously, a revoked SignatureKey belonging to a CA
was not correctly checked for revocation. Now, both the
key and key.SignatureKey are checked for @Revoked.
This is CVE-2026-42508 and Go issue https://go.dev/issue/79568.
This was a PUBLIC track issue, tracked in http://b/502121237.
Previously, a revoked
SignatureKeybelonging to a CAwas not correctly checked for revocation. Now, both the
keyandkey.SignatureKeyare checked for @Revoked.This is CVE-2026-42508 and Go issue https://go.dev/issue/79568.
This was a PUBLIC track issue, tracked in http://b/502121237.