vendor:
WolfSSL
by:
TALOS
9,8
CVSS
CRITICAL
WOLFSSL LIBRARY X509 CERTIFICATE TEXT PARSING CODE EXECUTION VULNERABILITY
193
CWE
Product Name: WolfSSL
Affected Version From: WolfSSL 3.10.2
Affected Version To: WolfSSL 3.10.2
Patch Exists: YES
Related CWE: CVE-2017-2800
CPE: a:wolfssl:wolfssl
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2017
TALOS-2017-0293
An exploitable off-by-one write vulnerability exists in the x509 certificate parsing functionality of wolfSSL library versions up to 3.10.2. A specially crafted x509 certificate can cause a single out of bounds byte overwrite resulting in potential certificate validation vulnerabilities, denial of service and possible remote code execution. In order to trigger this vulnerability, the attacker needs to supply a malicious x509 certificate to either server or client application using this library.
Mitigation:
Upgrade to wolfSSL version 3.10.3 or later.