Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f4w6-5m9p-28hw

Опубликовано: 10 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 6.3
CVSS3: 9.1

Описание

Dual-Algorithm CertificateVerify out-of-bounds read. When processing a dual-algorithm CertificateVerify message, an out-of-bounds read can occur on crafted input. This can only occur when --enable-experimental and --enable-dual-alg-certs is used when building wolfSSL.

Dual-Algorithm CertificateVerify out-of-bounds read. When processing a dual-algorithm CertificateVerify message, an out-of-bounds read can occur on crafted input. This can only occur when --enable-experimental and --enable-dual-alg-certs is used when building wolfSSL.

EPSS

Процентиль: 9%
0.00194
Низкий

6.3 Medium

CVSS4

9.1 Critical

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 9.1
ubuntu
4 месяца назад

Dual-Algorithm CertificateVerify out-of-bounds read. When processing a dual-algorithm CertificateVerify message, an out-of-bounds read can occur on crafted input. This can only occur when --enable-experimental and --enable-dual-alg-certs is used when building wolfSSL.

CVSS3: 9.1
nvd
4 месяца назад

Dual-Algorithm CertificateVerify out-of-bounds read. When processing a dual-algorithm CertificateVerify message, an out-of-bounds read can occur on crafted input. This can only occur when --enable-experimental and --enable-dual-alg-certs is used when building wolfSSL.

msrc
4 месяца назад

OOB Read in DoTls13CertificateVerify with WOLFSSL_DUAL_ALG_CERTS

CVSS3: 9.1
debian
4 месяца назад

Dual-Algorithm CertificateVerify out-of-bounds read. When processing a ...

EPSS

Процентиль: 9%
0.00194
Низкий

6.3 Medium

CVSS4

9.1 Critical

CVSS3

Дефекты

CWE-125