CVE-2026-54638 | gotd up to 0.145.0 Unencrypted Message Decoder unencrypted_message.go proto.UnencryptedMessage.Decode dataLen allocation of resources
A vulnerability identified as problematic has been detected in gotd td up to 0.145.0. This affects the function proto.UnencryptedMessage.Decode of the file proto/unencrypted_message.go of the component Unencrypted Message Decoder. The manipulation of the argument dataLen leads to allocation of resources.
This vulnerability is traded as CVE-2026-54638. It is possible to initiate the attack remotely. There is no exploit available.
You should upgrade the affected component.VulDB Recent EntriesRead More