CVE-2026-5392 | wolfSSL up to 5.9.0 PKCS7 Parser PKCS7_VerifySignedData out-of-bounds (Nessus ID 305899)
A vulnerability described as problematic has been identified in wolfSSL up to 5.9.0. Affected by this vulnerability is the function PKCS7_VerifySignedData of the component PKCS7 Parser. Such manipulation leads to out-of-bounds read.
This vulnerability is traded as CVE-2026-5392. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.