216.73.216.233

CVE-2026-5392

· Published 10/04/2026 00:16 · Modified 10/04/2026 00:16

Labels: CVE-2026-5392 2026-04-10CVE-2026-5392CWE-125[email protected]

Essential information

Published
10/04/2026 00:16
Modified
10/04/2026 00:16
Author
Creator
CVSS
2.3 LOW (v3) 2.3 LOW (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

Heap out-of-bounds read in PKCS7 parsing. A crafted PKCS7 message can trigger an OOB read on the heap. The missing bounds check is in the indefinite-length end-of-content verification loop in PKCS7_VerifySignedData().

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
wolfssl / wolfssl cpe:2.3:a:wolfssl:wolfssl:*:*:*:*:*:*:*:*

References