Verifying certificate chains containing certificates which are not compliant with RFC 5280 causes Certificate.Verify to panic on macOS.
These chains can be delivered through TLS and can cause a crypto/tls or net/http client to crash.
{
"url": "https://pkg.go.dev/vuln/GO-2022-0434",
"review_status": "REVIEWED"
}