#VU125926 Stack-based buffer overflow in wolfSSL - CVE-2026-5295
Published: April 14, 2026
wolfSSL
wolfSSL
Description
The vulnerability allows a remote attacker to execute arbitrary code or cause a denial of service.
The vulnerability exists due to a stack-based buffer overflow in PKCS7 ORI OID processing when parsing a PKCS7 envelope with a crafted ORI OID value. A remote attacker can provide a specially crafted PKCS7 envelope to execute arbitrary code or cause a denial of service.