#VU125940 Buffer overflow in wolfSSL - CVE-2026-5448
Published: April 14, 2026
wolfSSL
wolfSSL
Description
The vulnerability allows a remote user to cause a denial of service or execute arbitrary code.
The vulnerability exists due to a buffer overflow in wolfSSL_X509_notAfter / wolfSSL_X509_notBefore when parsing date fields from a crafted X.509 certificate via the compatibility layer API. A remote user can supply a crafted X.509 certificate to cause a denial of service or execute arbitrary code.
This is only triggered when an application calls these APIs directly and does not affect TLS or certificate verification operations.