CVE-2026-0930: Potential wolfSSHd Buffer out-of-bounds Read on Windows Handling Terminal Resize
Potential read out of bounds case with wolfSSHd on Windows while handling a terminal resize request. An authenticated user could trigger the out of bounds read after establishing a connection which would leak the adjacent stack memory to the pseudo-console output.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0930?
CVE-2026-0930 is classified as a moderate severity vulnerability due to its potential to leak sensitive information.
How do I fix CVE-2026-0930?
To fix CVE-2026-0930, update to the latest version of wolfSSL that includes the patch for the buffer out-of-bounds read issue.
Who is affected by CVE-2026-0930?
CVE-2026-0930 affects users of the wolfSSL wolfSSHd software running on Windows.
Can CVE-2026-0930 be exploited remotely?
Yes, CVE-2026-0930 can be exploited by an authenticated user remotely after establishing a connection.
What could an attacker gain from exploiting CVE-2026-0930?
Exploiting CVE-2026-0930 could allow an attacker to read adjacent memory, potentially leaking sensitive data.