Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2026-5263

Опубликовано: 15 апр. 2026
Источник: msrc
EPSS Низкий

Описание

URI nameConstraints not enforced in ConfirmNameConstraints()

EPSS

Процентиль: 6%
0.00165
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
4 месяца назад

URI nameConstraints from constrained intermediate CAs are parsed but not enforced during certificate chain verification in wolfcrypt/src/asn.c. A compromised or malicious sub-CA could issue leaf certificates with URI SAN entries that violate the nameConstraints of the issuing CA, and wolfSSL would accept them as valid.

CVSS3: 6.5
nvd
4 месяца назад

URI nameConstraints from constrained intermediate CAs are parsed but not enforced during certificate chain verification in wolfcrypt/src/asn.c. A compromised or malicious sub-CA could issue leaf certificates with URI SAN entries that violate the nameConstraints of the issuing CA, and wolfSSL would accept them as valid.

CVSS3: 6.5
debian
4 месяца назад

URI nameConstraints from constrained intermediate CAs are parsed but n ...

CVSS3: 6.5
github
4 месяца назад

URI nameConstraints from constrained intermediate CAs are parsed but not enforced during certificate chain verification in wolfcrypt/src/asn.c. A compromised or malicious sub-CA could issue leaf certificates with URI SAN entries that violate the nameConstraints of the issuing CA, and wolfSSL would accept them as valid.

EPSS

Процентиль: 6%
0.00165
Низкий