PT-2026-48872 · Veracrypt · Veracrypt
CVE-2026-53762
·
Published
2026-06-12
·
Updated
2026-08-21
CVSS v3.1
6.2
Medium
| Vector | AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
VeraCrypt versions prior to 1.26.29
Description
Non-default builds created with
WOLFCRYPT=1 and WOLFCRYPT BACKEND route SHA-256 and SHA-512 volume-header key derivation through the derive key sha256() and derive key sha512() functions in src/Crypto/wolfCrypt.c. In these builds, the configured iterations value is discarded and wc HKDF (a HMAC-based Extract-and-Expand Key Derivation Function) is used instead of PBKDF2-HMAC. Consequently, changing the PIM or iteration count does not increase the derivation cost, which allows an attacker with access to an affected container, disk image, or volume header to perform offline password guesses more efficiently.Recommendations
Update to version 1.26.29.
Volumes created by an affected
WOLFCRYPT=1 build must be backed up and recreated, as corrected builds derive different keys.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Veracrypt