Vulnerabilidades em wolfssl
94 resultadosAnálise Vexday
WolfSSL apresenta um perfil de risco mínimo com apenas 1 CVE catalogado na base, sem registros de exploração ativa ou vulnerabilidades críticas. A fraqueza identificada (CWE-122 - buffer overflow) é de natureza clássica, porém o risco permanece contido pela baixa exposição histórica do fornecedor e ausência de atividade recente de ataque.
CVE-2025-11936MEDIUMPotential DoS Vulnerability through Multiple KeyShareEntry with Same Group in TLS 1.3 ClientHelloEPSS 0.4%CVE-2026-5477HIGHPrefix-substitution forgery via integer overflow in wolfCrypt CMACEPSS 0.4%CVE-2025-7394HIGHIn the OpenSSL compatibility layer implementation, the function RAND_poll() was not behaving as expected and leading to the potential for prEPSS 0.4%CVE-2025-14942CRITICALAuthentication BypassEPSS 0.4%CVE-2026-5503MEDIUMout-of-bounds write in TLSX_EchChangeSNI via attacker-controlled publicNameEPSS 0.4%CVE-2026-6092LOWEncrypt-then-MAC could fall back to MAC-then-Encrypt when HAVE_ENCRYPT_THEN_MAC is configuredEPSS 0.4%CVE-2026-6681LOWPKCS#7 decode ignores caller output buffer size, writing past buffer boundsEPSS 0.4%CVE-2026-11703MEDIUMMissing SNI/ALPN binding on stateful (session-ID) TLS session resumptionEPSS 0.4%CVE-2026-5500HIGHImproper Validation of AES-GCM Authentication Tag Length in PKCS#7 Envelope Allows Authentication BypassEPSS 0.4%CVE-2024-1544MEDIUMECDSA nonce bias caused by truncationEPSS 0.3%CVE-2025-15382MEDIUMClient SCP Request Triggers Buffer Overread by 1 ByteEPSS 0.3%CVE-2026-4395LOWHeap-based buffer overflow in wc_ecc_import_x963_ex KCAPI pathEPSS 0.3%CVE-2025-15346CRITICALwolfSSL Python library `CERT_REQUIRED` mode fails to enforce client certificate requirementEPSS 0.3%CVE-2026-6678LOWInteger underflow in wc_PKCS7_DecryptOri handling crafted Other Recipient InfoEPSS 0.3%CVE-2026-6450LOWCRL critical extension bypass in ParseCRL_ExtensionsEPSS 0.3%CVE-2025-11931LOWInteger Underflow Leads to Out-of-Bounds Access in XChaCha20-Poly1305 DecryptEPSS 0.3%CVE-2026-12340MEDIUMOut-of-bounds heap read in SM2/SM3 certificate Subject Key Identifier computationEPSS 0.3%CVE-2026-6325LOWOut-of-bounds write in SetSuitesHashSigAlgo on oversized signature algorithms listEPSS 0.3%CVE-2026-7532MEDIUMiPAddress name constraints not enforced when WOLFSSL_IP_ALT_NAME is undefinedEPSS 0.3%CVE-2025-12888LOWConstant Time Issue with Xtensa-based ESP32 and X22519EPSS 0.3%