wolfssl Summary
Latest vulnerabilities published by wolfssl
Vulnerability Published:
ποΈ Published
- Anytime
Sort By:
ποΈ Published Date
- Descending
Fault Injection vulnerability in wolfssl/wolfcrypt/src/ed25519.c allows remote attacker co-resides in the same system with a victim process to disclose information and escalate privileges via Rowhammer fault injection to the ed25519_key structure.
CVE-2024-2881WolfsslWolfcrypt8.8HIGHFault Injection Vulnerability Affects WolfSSL on Linux/Windows
CVE-2024-1545WolfsslWolfcrypt8.8HIGHSide-Channel Protection Against Cache-Line Resolution Attacks
CVE-2024-1543WolfsslWolfssl5.5MEDIUMSide-Channel Attack on ECDSA Nonce k Generation Reveals Significant Bias
CVE-2024-1544WolfsslWolfssl4.1MEDIUMCiphersuite Downgrade Attack via Skipping Fully Parsing Server Hello
CVE-2024-5814WolfsslWolfsslSafe-error attack via Rowhammer leads to ECDSA key disclosure
CVE-2024-5288Wolfssl Inc.Wolfssl5.9MEDIUMFunction MatchDomainName() vulnerable to buffer overflow due to unchecked user input
CVE-2024-5991WolfsslWolfssl7.5HIGHMalicious Packet Sender Can Crash or Cause Out of Bounds Read
CVE-2024-0901WolfsslWolfssl7.5HIGHUnauthorized Access Vulnerability in WolfSSH Server-Side State Machine Before Versions 1.4.17
CVE-2024-2873Wolfssl Inc.Wolfssh9.1CRITICALBuffer Over-Read Vulnerability in wolfSSL Prior to 5.6.6
CVE-2023-6936WolfsslWolfssl9.1CRITICALwolfSSL did not check that messages in one (D)TLS record do not span key boundaries
CVE-2023-6937WolfsslWolfssl5.3MEDIUMMarvin Attack Vulnerability Affects wolfSSL SP Math All RSA Implementation
CVE-2023-6935wolfSSLwolfSSL5.9MEDIUMTLS 1.3 client issue handling malicious server when not including a KSE and PSK extension
CVE-2023-3724WolfsslWolfssl9.1CRITICALBuffer Over-Read Vulnerability in wolfSSL Product
CVE-2022-42905WolfsslWolfssl9.1CRITICALFault Injection Vulnerability in wolfSSL Affects ECDSA Key Security
CVE-2022-42961WolfsslWolfssl5.3MEDIUMBuffer Overflow Vulnerability in wolfSSL During TLS 1.3 Handshake
CVE-2022-39173WolfsslWolfssl7.5HIGHDenial of Service Vulnerability in wolfSSL Client Component
CVE-2021-44718WolfsslWolfssl5.9MEDIUMMan-in-the-Middle Vulnerability in wolfSSL Product
CVE-2022-38153WolfsslWolfssl5.9MEDIUMDenial of Service Vulnerability in wolfSSL Software
CVE-2022-38152WolfsslWolfssl7.5HIGHDenial of Service Vulnerability in wolfSSL by wolfSSL
CVE-2022-34293WolfsslWolfssl7.5HIGHMutual Authentication Vulnerability in wolfSSL TLS 1.3 Implementation
CVE-2022-25640WolfsslWolfsslπΎπ‘7.5HIGHCertificate Validation Vulnerability in wolfSSL TLS 1.3 Client Authentication
CVE-2022-25638WolfsslWolfssl6.5MEDIUMImproper IV Initialization in wolfSSL TLS Implementations
CVE-2022-23408WolfsslWolfssl9.1CRITICALHeap-based Buffer Overflow in wolfMQTT by wolfSSL
CVE-2021-45936WolfsslWolfMQtt5.5MEDIUMHeap-Based Buffer Overflow in wolfMQTT from wolfSSL
CVE-2021-45933WolfsslWolfMQtt5.5MEDIUM