#VU125942 Integer underflow in wolfSSL - CVE-2026-5778
Published: April 14, 2026
wolfSSL
wolfSSL
Description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to an integer underflow leading to an out-of-bounds read in the ChaCha20-Poly1305 decryption path when processing a malformed TLS 1.2 record with a payload shorter than the AEAD MAC size. A remote attacker can send a malformed TLS 1.2 record to cause a denial of service.
This only affects sniffer builds.