CVE-2025-11933
Improper Input Validation in the TLS 1.3 CKS extension parsing in wolfSSL 5.8.2 and earlier on multiple platforms allows a remote unauthenticated attacker to potentially cause a denial-of-service via a crafted ClientHello message with duplicate CKS extensions.
Vendor
Product
CWE
Yayın Tarihi
2025-11-21 23:15:44
Güncelleme
2025-12-03 18:47:07
Source Identifier
facts@wolfssl.com
KEV Date Added
-