Stack Buffer Overwrite Vulnerability in wolfSSL SFTP Server
CVE-2025-11624
What is CVE-2025-11624?
A vulnerability exists in the wolfSSL SFTP server that can be exploited by sending a specially crafted malicious packet. This packet has a handle size that exceeds the system's handle or file descriptor size but is still smaller than the maximum handle size allowed. Exploiting this flaw could lead to a stack buffer overwrite, potentially allowing an attacker to execute arbitrary code or disrupt normal operations of the server. It is crucial for users to apply necessary security patches to safeguard their systems against this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
wolfSSH 1.3.0 <= 1.4.20
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved
