Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

wolfSSL — Vulnerabilities & Security Advisories 94

Browse all 94 CVE security advisories affecting wolfSSL. AI-powered Chinese analysis, POCs, and references for each vulnerability.

wolfSSL is an embedded SSL/TLS library primarily designed for resource-constrained environments, including IoT devices, automotive systems, and embedded Linux. Its compact footprint makes it a standard choice for secure communications in hardware with limited memory and processing power. Historically, the codebase has been associated with numerous Common Vulnerabilities and Exposures, totaling 62 recorded instances. These flaws predominantly involve memory corruption issues, such as buffer overflows and use-after-free errors, which can lead to remote code execution or denial of service. While cross-site scripting is less relevant to its backend nature, improper input validation remains a recurring theme. Notable incidents often stem from complex cryptographic implementations or parsing errors in certificate handling. The project maintains an active security response process, addressing these vulnerabilities through regular updates, though the high volume of past CVEs highlights the challenges of maintaining rigorous security standards in a widely deployed, low-level cryptographic component.

CVE ID Title CVSS Severity Published
CVE-2026-7511 PKCS7_verify signer confusion allows forged signatures to be accepted — wolfSSL CWE-347 - - 2026-06-25
CVE-2026-7532 iPAddress name constraints not enforced when WOLFSSL_IP_ALT_NAME is undefined — wolfSSL CWE-295 - - 2026-06-25
CVE-2026-8720 HMAC-BLAKE2 final discards message when key length exceeds block size — wolfSSL CWE-354 - - 2026-06-25
CVE-2026-10098 OCSP CertID serial-number length-confusion in wolfSSL_OCSP_resp_find_status — wolfSSL CWE-295 - - 2026-06-25
CVE-2026-11703 Missing SNI/ALPN binding on stateful (session-ID) TLS session resumption — wolfSSL CWE-287 - - 2026-06-25
CVE-2026-55962 TLS 1.3 post-handshake authentication: server accepts Finished without client Certificate/CertificateVerify — wolfSSL CWE-287 - - 2026-06-25
CVE-2026-6092 Encrypt-then-MAC could fall back to MAC-then-Encrypt when HAVE_ENCRYPT_THEN_MAC is configured — wolfSSL CWE-757 - - 2026-06-25
CVE-2026-6325 Out-of-bounds write in SetSuitesHashSigAlgo on oversized signature algorithms list — wolfSSL CWE-787 - - 2026-06-25
CVE-2026-6329 PKCS#12 MAC verification uses attacker-controlled comparison length — wolfSSL CWE-347 - - 2026-06-25
CVE-2026-6330 ML-KEM ARM64 NEON ciphertext comparison only compares half of the input — wolfSSL CWE-327 - - 2026-06-25
CVE-2026-6331 HMAC zero-length tag forgery in EVP_DigestVerifyFinal — wolfSSL CWE-347 - - 2026-06-25
CVE-2026-6412 Continued acceptance of SHA-1/MD5 digests in certificate processing — wolfSSL CWE-327 - - 2026-06-25
CVE-2026-6450 CRL critical extension bypass in ParseCRL_Extensions — wolfSSL CWE-295 - - 2026-06-25
CVE-2026-6678 Integer underflow in wc_PKCS7_DecryptOri handling crafted Other Recipient Info — wolfSSL CWE-191 - - 2026-06-25
CVE-2026-6679 DTLS 1.3 ACK serialization heap buffer overflow via integer truncation — wolfSSL CWE-787 - - 2026-06-25
CVE-2026-6681 PKCS#7 decode ignores caller output buffer size, writing past buffer bounds — wolfSSL CWE-787 - - 2026-06-25
CVE-2026-6731 X.509 name constraint bypass via Subject CN treated as a DNS name — wolfSSL CWE-295 - - 2026-06-25
CVE-2026-7531 Use-after-free in PQC hybrid key-share handling — wolfSSL CWE-416 - - 2026-06-25
CVE-2026-10097 ML-KEM-1024 x64 AVX2 incomplete cipher text comparison enables IND-CCA2 break and static private-key recovery — wolfSSL CWE-697 - - 2026-06-25
CVE-2026-10512 X25519 x86_64 assembly final reduction leaves non-canonical field element — wolfSSL CWE-682 - - 2026-06-25
CVE-2026-10592 Wildcard DNS SAN bypasses CA name-constraint checks — wolfSSL CWE-295 - - 2026-06-25
CVE-2026-11310 X.509 trust-chain bypass in wolfSSL_X509_verify_cert() via untrusted intermediate anchoring — wolfSSL CWE-295 - - 2026-06-25
CVE-2026-12340 Out-of-bounds heap read in SM2/SM3 certificate Subject Key Identifier computation — wolfSSL CWE-125 - - 2026-06-25
CVE-2026-55958 Renesas TSIP TLS 1.3 transcript buffer out-of-bounds write in tsip_StoreMessage — wolfSSL CWE-787 - - 2026-06-25
CVE-2026-55960 Un-negotiated Raw Public Key (RFC 7250) accepted in place of X.509, bypassing chain validation — wolfSSL CWE-295 - - 2026-06-25
CVE-2026-55964 Chain intermediate CA:TRUE without keyCertSign accepted as a signing CA (temporary CA exemption) — wolfSSL CWE-295 - - 2026-06-25
CVE-2026-11999 X.509 trust-chain bypass via path-depth exhaustion in wolfSSL_X509_verify_cert() — wolfSSL CWE-295 - - 2026-06-25
CVE-2026-55967 AES-GCM streaming APIs do not reject >64 GiB cumulative single messages, enabling counter wrap and keystream reuse — wolfSSL CWE-323 - - 2026-06-25
CVE-2026-55961 wolfSSL_PKCS7_verify() reports success for degenerate (certs-only) PKCS#7 with no signer — wolfSSL CWE-347 - - 2026-06-25
CVE-2026-6091 Partial-chain verification accepts untrusted intermediate as trust anchor — wolfSSL CWE-295 - - 2026-06-25

This page lists every published CVE security advisory associated with wolfSSL. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.