CVE List

CVE-2014-2898

Severe 9.8

wolfSSL CyaSSL before 2.9.4 allows remote attackers to have unspecified impact via multiple calls to the CyaSSL_read function which triggers an out-of-bounds read when an error occurs, related to not checking the return code and MAC verification failure.

Published January 28, 2020.

Affected software

Get alerts for Wolfssl Wolfssl

Reference links