PT-2026-48872 · Veracrypt · Veracrypt

CVE-2026-53762

·

Published

2026-06-12

·

Updated

2026-08-21

CVSS v3.1

6.2

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions VeraCrypt versions prior to 1.26.29
Description Non-default builds created with WOLFCRYPT=1 and WOLFCRYPT BACKEND route SHA-256 and SHA-512 volume-header key derivation through the derive key sha256() and derive key sha512() functions in src/Crypto/wolfCrypt.c. In these builds, the configured iterations value is discarded and wc HKDF (a HMAC-based Extract-and-Expand Key Derivation Function) is used instead of PBKDF2-HMAC. Consequently, changing the PIM or iteration count does not increase the derivation cost, which allows an attacker with access to an affected container, disk image, or volume header to perform offline password guesses more efficiently.
Recommendations Update to version 1.26.29. Volumes created by an affected WOLFCRYPT=1 build must be backed up and recreated, as corrected builds derive different keys.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-53762
GHSA-94C6-MGMV-MQC5

Affected Products

Veracrypt