wolfSSL.wolfssl is vulnerable to Integer Underflow
21
Low Risk
An integer underflow in XChaCha20-Poly1305 decryption can lead to out-of-bounds memory access. This issue occurs specifically in wc_XChaCha20Poly1305_Decrypt() and does not affect TLS connections, as the function is only invoked through direct application calls.
You are affected if you are using a version that falls within the vulnerable range.
wolfSSL.wolfssl is vulnerable to Integer Underflow in versions 5.8.2 - 5.8.2.
Upgrade the wolfSSL.wolfssl library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant