#VU125943 Out-of-bounds read in wolfSSL - CVE-2026-5393
Published: April 14, 2026
wolfSSL
wolfSSL
Description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to an out-of-bounds read in dual-algorithm CertificateVerify message processing when handling crafted input. A remote attacker can send a specially crafted CertificateVerify message to cause a denial of service.
This can only occur in builds compiled with both --enable-experimental and --enable-dual-alg-certs.