๐Ÿ” CVE Alert

CVE-2026-73500

UNKNOWN 0.0

etcd: `tlsListener.acceptLoop` spawns unbounded handshake goroutines with no deadline

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

etcd is a distributed key-value store for the data of a distributed system. Prior to versions 3.5.33, 3.6.14, and 3.7.1, a network attacker who can reach an etcd TLS listener can open many TCP connections and never send a ClientHello. In client/pkg/transport/listener_tls.go, each connection handled by tlsListener.acceptLoop spawns a goroutine that blocks indefinitely inside tls.Conn.Handshake() and remains tracked in the pending map. Unbounded goroutine and map growth can exhaust memory in the etcd process, causing loss of availability for the cluster and, when etcd backs Kubernetes, the control plane. This issue is fixed in versions 3.5.33, 3.6.14, and 3.7.1.

CWE CWE-770
Vendor etcd-io
Product etcd
Published Aug 12, 2026
Stay Ahead of the Next One

Get instant alerts for etcd-io etcd

Be the first to know when new unknown vulnerabilities affecting etcd-io etcd are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

etcd-io / etcd
< 3.5.33 >= 3.6.0, < 3.6.14 >= 3.7.0-alpha.0, < 3.7.1

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/etcd-io/etcd/security/advisories/GHSA-6vch-q96h-7gc3 github.com: https://github.com/etcd-io/etcd/pull/22130 github.com: https://github.com/etcd-io/etcd/commit/2e07efce9745004eb4773cffaada9b5cdf77cff2 github.com: https://github.com/etcd-io/etcd/commit/89ff6d50796049d4f1136915ba21504b76e7e372 github.com: https://github.com/etcd-io/etcd/commit/8e4dd0679a2c6b095d2a32a749fda2521c7809a3 github.com: https://github.com/etcd-io/etcd/commit/f73cba7d920019f91a1ea1f6697833e42731f057 github.com: https://github.com/etcd-io/etcd/releases/tag/v3.5.33 github.com: https://github.com/etcd-io/etcd/releases/tag/v3.6.14 github.com: https://github.com/etcd-io/etcd/releases/tag/v3.7.1