Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-5447

Опубликовано: 09 апр. 2026
Источник: debian
EPSS Низкий

Описание

Heap buffer overflow in CertFromX509 via AuthorityKeyIdentifier size confusion. A heap buffer overflow occurs when converting an X.509 certificate internally due to incorrect size handling of the AuthorityKeyIdentifier extension.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
wolfsslfixed5.9.1-0.1package
wolfsslno-dsatrixiepackage
wolfsslno-dsabookwormpackage
wolfsslpostponedbullseyepackage

Примечания

  • https://github.com/wolfSSL/wolfssl/pull/10112

  • Fixed by (merge): https://github.com/wolfSSL/wolfssl/commit/d278da09dfa60237f246236f2c8acc5d11c5915a (v5.9.1-stable)

EPSS

Процентиль: 13%
0.00222
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
4 месяца назад

Heap buffer overflow in CertFromX509 via AuthorityKeyIdentifier size confusion. A heap buffer overflow occurs when converting an X.509 certificate internally due to incorrect size handling of the AuthorityKeyIdentifier extension.

CVSS3: 5.3
redhat
4 месяца назад

Heap buffer overflow in CertFromX509 via AuthorityKeyIdentifier size confusion. A heap buffer overflow occurs when converting an X.509 certificate internally due to incorrect size handling of the AuthorityKeyIdentifier extension.

CVSS3: 7.5
nvd
4 месяца назад

Heap buffer overflow in CertFromX509 via AuthorityKeyIdentifier size confusion. A heap buffer overflow occurs when converting an X.509 certificate internally due to incorrect size handling of the AuthorityKeyIdentifier extension.

msrc
4 месяца назад

Heap buffer overflow in CertFromX509() via AuthorityKeyIdentifier

CVSS3: 7.5
github
4 месяца назад

Heap buffer overflow in CertFromX509 via AuthorityKeyIdentifier size confusion. A heap buffer overflow occurs when converting an X.509 certificate internally due to incorrect size handling of the AuthorityKeyIdentifier extension.

EPSS

Процентиль: 13%
0.00222
Низкий