vciy

CVEs we hold for Wolfssl

Records whose assigning authority named Wolfssl as the affected vendor. Newest identifiers first, capped at 200.

CVE-2026-8720HMAC-BLAKE2 final discards message when key length exceeds block sizewolfSSL
CVE-2026-81341wolfEngine reuses the AES-CCM nonce on TLS 1.2 / DTLS 1.2 recordswolfSSL Inc. wolfEngine
CVE-2026-81020wolfEngine reuses the AES-GCM nonce on every TLS 1.2 / DTLS 1.2 recordwolfSSL Inc. wolfEngine
CVE-2026-81019wolfProvider reuses the AES-GCM nonce on every TLS 1.2 / DTLS 1.2 recordwolfSSL Inc. wolfProvider
CVE-2026-7532iPAddress name constraints not enforced when WOLFSSL_IP_ALT_NAME is undefinedwolfSSL
CVE-2026-7531Use-after-free in PQC hybrid key-share handlingwolfSSL
CVE-2026-7511PKCS7_verify signer confusion allows forged signatures to be acceptedwolfSSL
CVE-2026-6731X.509 name constraint bypass via Subject CN treated as a DNS namewolfSSL
CVE-2026-6681PKCS#7 decode ignores caller output buffer size, writing past buffer boundswolfSSL
CVE-2026-6679DTLS 1.3 ACK serialization heap buffer overflow via integer truncationwolfSSL
CVE-2026-6678Integer underflow in wc_PKCS7_DecryptOri handling crafted Other Recipient InfowolfSSL
CVE-2026-6450CRL critical extension bypass in ParseCRL_ExtensionswolfSSL
CVE-2026-6412Continued acceptance of SHA-1/MD5 digests in certificate processingwolfSSL
CVE-2026-6331HMAC zero-length tag forgery in EVP_DigestVerifyFinalwolfSSL
CVE-2026-6330ML-KEM ARM64 NEON ciphertext comparison only compares half of the inputwolfSSL
CVE-2026-6329PKCS#12 MAC verification uses attacker-controlled comparison lengthwolfSSL
CVE-2026-6325Out-of-bounds write in SetSuitesHashSigAlgo on oversized signature algorithms listwolfSSL
CVE-2026-6291Bleichenbacher padding oracle in PKCS#7 KTRI RSA PKCS#1 v1.5 decryptionwolfSSL
CVE-2026-6094Heap buffer overread in wc_PKCS7_DecodeEnvelopedData parsing crafted PKCS7 EnvelopedDatawolfSSL
CVE-2026-6092Encrypt-then-MAC could fall back to MAC-then-Encrypt when HAVE_ENCRYPT_THEN_MAC is configuredwolfSSL
CVE-2026-6091Partial-chain verification accepts untrusted intermediate as trust anchorwolfSSL
CVE-2026-5778Integer underflow leads to out-of-bounds access in sniffer ChaCha decrypt path.wolfSSL
CVE-2026-5772MatchDomainName 1-Byte Stack Buffer Over-Read in Hostname ValidationwolfSSL
CVE-2026-55967AES-GCM streaming APIs do not reject >64 GiB cumulative single messages, enabling counter wrap and keystream reusewolfSSL
CVE-2026-55964Chain intermediate CA:TRUE without keyCertSign accepted as a signing CA (temporary CA exemption)wolfSSL
CVE-2026-55962TLS 1.3 post-handshake authentication: server accepts Finished without client Certificate/CertificateVerifywolfSSL
CVE-2026-55961wolfSSL_PKCS7_verify() reports success for degenerate (certs-only) PKCS#7 with no signerwolfSSL
CVE-2026-55960Un-negotiated Raw Public Key (RFC 7250) accepted in place of X.509, bypassing chain validationwolfSSL
CVE-2026-55958Renesas TSIP TLS 1.3 transcript buffer out-of-bounds write in tsip_StoreMessagewolfSSL
CVE-2026-5507Session Cache Restore — Arbitrary Free via Deserialized PointerwolfSSL
CVE-2026-5504PKCS7 CBC Padding Oracle — Plaintext RecoverywolfSSL
CVE-2026-5503out-of-bounds write in TLSX_EchChangeSNI via attacker-controlled publicNamewolfSSL
CVE-2026-5501Improper Certificate Signature Verification in X.509 Chain Validation Allows Forged Leaf CertificateswolfSSL
CVE-2026-5500Improper Validation of AES-GCM Authentication Tag Length in PKCS#7 Envelope Allows Authentication BypasswolfSSL
CVE-2026-5479wolfSSL EVP ChaCha20-Poly1305 AEAD authentication tagwolfSSL
CVE-2026-5477Prefix-substitution forgery via integer overflow in wolfCrypt CMACwolfSSL
CVE-2026-5466wc_VerifyEccsiHash missing sanity checkwolfSSL
CVE-2026-5460Heap Use-After-Free in PQC Hybrid KeyShare Error Cleanup in wolfSSL TLS 1.3wolfSSL
CVE-2026-54481-2 Byte Buffer Overflow in wolfSSL_X509_notAfter/notBeforewolfSSL
CVE-2026-5447Heap buffer overflow in CertFromX509() via AuthorityKeyIdentifierwolfSSL
CVE-2026-5446wolfSSL ARIA-GCM TLS 1.2/DTLS 1.2 GCM nonce reusewolfSSL
CVE-2026-5393OOB Read in DoTls13CertificateVerify with WOLFSSL_DUAL_ALG_CERTSwolfSSL
CVE-2026-5392wolfSSL heap OOB read in PKCS7 SignedData streamingwolfSSL
CVE-2026-5295Stack Buffer Overflow in wolfSSL PKCS7 wc_PKCS7_DecryptOri() via Oversized OIDwolfSSL
CVE-2026-5264DTLS 1.3 ACK heap buffer overflowwolfSSL
CVE-2026-5263URI nameConstraints not enforced in ConfirmNameConstraints()wolfSSL
CVE-2026-5194wolfSSL ECDSA Certificate VerificationwolfSSL
CVE-2026-5188Integer underflow in X.509 SAN parsing in wolfSSLwolfSSL
CVE-2026-5187Heap Out-of-Bounds Write in DecodeObjectId() in wolfSSLwolfSSL
CVE-2026-4395Heap-based buffer overflow in wc_ecc_import_x963_ex KCAPI pathwolfssl
CVE-2026-4159wc_PKCS7_DecodeEnvelopedData 1 byte out-of-bounds readwolfSSL
CVE-2026-3849Buffer Overflow in HPKE via Oversized ECH ConfigwolfSSL
CVE-2026-3580Compiler-induced timing leak in sp_256_get_entry_256_9 on RISC-VwolfSSL
CVE-2026-3579Non-constant time multiplication subroutine __muldi3 on RISC-V RV32IwolfSSL
CVE-2026-3548Buffer overflow in CRL number parsing in wolfSSLwolfSSL
CVE-2026-3547wolfSSL: out-of-bounds read (DoS) in ALPN parsing due to incomplete validationwolfSSL
CVE-2026-3503Fault injection attack with ML-DSA and ML-KEM on ARMwolfSSL (wolfCrypt)
CVE-2026-3230Improper key_share validation in TLS 1.3 HelloRetryRequestwolfSSL
CVE-2026-2646Heap buffer overflow in session parsing with wolfSSL_d2i_SSL_SESSION() functionwolfssl
CVE-2026-2645Acceptance of CertificateVerify Message before ClientKeyExchange in TLS 1.2wolfSSL
CVE-2026-12340Out-of-bounds heap read in SM2/SM3 certificate Subject Key Identifier computationwolfSSL
CVE-2026-11999X.509 trust-chain bypass via path-depth exhaustion in wolfSSL_X509_verify_cert()wolfSSL
CVE-2026-11703Missing SNI/ALPN binding on stateful (session-ID) TLS session resumptionwolfSSL
CVE-2026-11310X.509 trust-chain bypass in wolfSSL_X509_verify_cert() via untrusted intermediate anchoringwolfSSL
CVE-2026-10592Wildcard DNS SAN bypasses CA name-constraint checkswolfSSL
CVE-2026-10512X25519 x86_64 assembly final reduction leaves non-canonical field elementwolfSSL
CVE-2026-10098OCSP CertID serial-number length-confusion in wolfSSL_OCSP_resp_find_statuswolfSSL
CVE-2026-10097ML-KEM-1024 x64 AVX2 incomplete cipher text comparison enables IND-CCA2 break and static private-key recoverywolfSSL
CVE-2026-1005Integer underflow leads to out-of-bounds access in sniffer AES-GCM/CCM/ARIA-GCM decrypt pathwolfSSL
CVE-2026-0930Potential wolfSSHd Buffer out-of-bounds Read on Windows Handling Terminal ResizewolfSSL wolfSSH
CVE-2026-0819Stack buffer overflow in PKCS7 SignedData encoding with custom signed attributeswolfSSL
CVE-2025-7844wolfTPM library wrapper function `wolfTPM2_RsaKey_TpmToWolf` copies external data to a fixed-size stack buffer without…wolfSSL Inc. wolfTPM
CVE-2025-7396Curve25519 BlindingwolfSSL
CVE-2025-7395Domain Name Validation Bypass with Apple Native Certificate ValidationwolfSSL
CVE-2025-7394no title heldwolfSSL
CVE-2025-15382Client SCP Request Triggers Buffer Overread by 1 BytewolfSSL wolfSSH
CVE-2025-15346wolfSSL Python library `CERT_REQUIRED` mode fails to enforce client certificate requirementwolfSSL-py
CVE-2025-14942Authentication BypasswolfSSL wolfSSH
CVE-2025-13912Potential non-constant time compiled code with Clang LLVMwolfSSL
CVE-2025-12889TLS 1.2 Client Can Downgrade Digest UsedwolfSSL
CVE-2025-12888Constant Time Issue with Xtensa-based ESP32 and X22519wolfSSL
CVE-2025-11936Potential DoS Vulnerability through Multiple KeyShareEntry with Same Group in TLS 1.3 ClientHellowolfSSL
CVE-2025-11935Forward Secrecy Violation in WolfSSL TLS 1.3wolfSSL
CVE-2025-11934Improper Validation of Signature Algorithm Used in TLS 1.3 CertificateVerifywolfSSL
CVE-2025-11932Timing Side-Channel in PSK Binder VerificationwolfSSL
CVE-2025-11931Integer Underflow Leads to Out-of-Bounds Access in XChaCha20-Poly1305 DecryptwolfSSL
CVE-2025-11625Host verification bypass and credential leakwolfSSL wolfSSH
CVE-2024-5991Buffer overread in domain name matchingwolfSSL
CVE-2024-5814Unverifed Ciphersuite used on a client-side TLS1.3 DowngradewolfSSL
CVE-2024-5288Safe-error attack on TLS 1.3 ProtocolwolfSSL
CVE-2024-2881Fault Injection of EdDSA signature in WolfCryptWolfSSL wolfCrypt
CVE-2024-2873User authentication bypass in wolfSSH serverwolfSSL Inc. wolfSSH
CVE-2024-1545Fault Injection of RSA encryption in WolfCryptWolfSSL wolfCrypt
CVE-2024-1544ECDSA nonce bias caused by truncationwolfSSL
CVE-2024-1543AES T-Table sub-cache-line leakagewolfSSL
CVE-2024-0901SEGV and out of bounds memory read from malicious packetwolfSSL
CVE-2023-6937Improper (D)TLS key boundary enforcementwolfSSL
CVE-2023-6936Heap-buffer over-read with WOLFSSL_CALLBACKSwolfSSL
CVE-2023-6935Marvin Attack vulnerability in SP Math All RSAwolfSSL
CVE-2023-3724TLS 1.3 client issue handling malicious server when not including a KSE and PSK extensionwolfSSL
CVE-2018-16870no title heldn/a wolfssl
CVE-2017-2800no title heldwolfSSL
CVE-2017-13099wolfSSL Bleichenbacher/ROBOTwolfSSL

103 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.

Everything on this page is free. Public data. Withholding it protects nothing.