wolfSSL Subject Alternative Name Integer Underflow Vulnerability in X.509 Certificate Parsing

Vulnerability

A vulnerability exists in wolfSSL's X.509 certificate handling, specifically when parsing the Subject Alternative Name (SAN) extension. The issue arises from an integer underflow, where a malformed certificate can specify a length for an entry that exceeds the total length of the enclosing sequence. This discrepancy causes the internal length counter to wrap, leading to improper management of the certificate data. This vulnerability is present only in configurations that utilize the original ASN.1 parsing implementation, which is disabled by default.

Impact

Exploitation of this vulnerability could lead to incorrect processing of X.509 certificate data, potentially allowing for malformed certificates to be accepted or misinterpreted during cryptographic operations.

Remediation

Users can update to the latest version of wolfSSL, where this vulnerability has been addressed. Instructions for updating can be found in the wolfSSL documentation.

Added: Apr 10, 2026, 4:26 AM
Updated: Apr 10, 2026, 4:26 AM

Vulnerability Rating

Custom Algorithm
spread
6.6
impact
0.6
exploitability
5.3
remediation
8.3
relevance
5.3
threat
3.2
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.