#VU67767 Buffer overflow in wolfSSL - CVE-2022-39173
Published: September 30, 2022 / Updated: October 30, 2022
wolfSSL
wolfSSL
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a boundary error when processing TLS 1.3 protocol requests with session tickets. A remote attacker can send a specially crafted ClientHello packet to the affected server, trigger a buffer overflow and perform a denial of service (DoS) attack.