Back to CVE List

CVE-2026-5392

Vulnerability Description

Heap out-of-bounds read in PKCS7 parsing. A crafted PKCS7 message can trigger an OOB read on the heap. The missing bounds check is in the indefinite-length end-of-content verification loop in PKCS7_VerifySignedData().

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-125
Source
NVD

External References

Discussion (0)

Add Comment

No comments yet. Be the first!