#VU125924 Heap-based buffer overflow in wolfSSL - CVE-2026-5264
Published: April 14, 2026
wolfSSL
wolfSSL
Description
The vulnerability allows a remote attacker to execute arbitrary code or cause a denial of service.
The vulnerability exists due to a heap-based buffer overflow in DTLS 1.3 ACK message processing when handling a crafted DTLS 1.3 ACK message. A remote attacker can send a specially crafted DTLS 1.3 ACK message to execute arbitrary code or cause a denial of service.