Vulnerabilidades en wolfSSL Inc.
5 resultadosAnálisis Vexday
A wolfSSL Inc. apresenta 5 vulnerabilidades catalogadas, com 1 classificada como crítica, porém nenhuma sob ataque ativo confirmado. A fraqueza dominante (CWE-121 - stack-based buffer overflow) indica risco de execução de código remoto, embora o panorama seja estável com nenhuma divulgação recente nos últimos 90 dias.
CVE-2024-2873CRITICALUser authentication bypass in wolfSSH serverEPSS 0.6%CVE-2026-3849MEDIUMBuffer Overflow in HPKE via Oversized ECH ConfigEPSS 0.4%CVE-2024-5288MEDIUMSafe-error attack on TLS 1.3 ProtocolEPSS 0.4%CVE-2026-3503MEDIUMFault injection attack with ML-DSA and ML-KEM on ARMEPSS 0.2%CVE-2025-7844LOWwolfTPM library wrapper function `wolfTPM2_RsaKey_TpmToWolf` copies external data to a fixed-size stack buffer without length validation potentially causing stack-based buffer overflowEPSS 0.1%