PT-2026-52588 · Wolfssl · Wolfssl

·

CVE-2026-6681

·

Published

2026-06-25

·

Updated

2026-07-14

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions wolfSSL versions prior to 5.9.1
Description The PKCS#7 decode path fails to respect the caller-supplied output buffer size outputSz. This allows decoded content to be written beyond the boundaries of the provided buffer, leading to a buffer overflow. A buffer overflow occurs when a program writes more data to a block of memory than it is allocated to hold.
Recommendations Update to version 5.9.1.

Exploit

Fix

Memory Corruption

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-6681
JLSEC-2026-754

Affected Products

Wolfssl