Incorrect calculation in wolfSSL - CVE-2026-10512
Published: July 1, 2026
wolfSSL
Detailed vulnerability description
The vulnerability allows a remote attacker to cause incorrect shared secret computation.
The vulnerability exists due to incorrect calculation in the X25519 x86_64 assembly implementation when performing the final modular reduction. A remote attacker can trigger X25519 operations to cause incorrect shared secret computation.
The issue affects the x86_64 assembly implementation.