VulnerabilityModified
CVE-2020-36177
RsaPad_PSS in wolfcrypt/src/rsa.c in wolfSSL before 4.6.0 has an out-of-bounds write for certain relationships between key size and digest size.
CRITICAL 9.8EPSS 3.52%
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (3.52%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
RsaPad_PSS in wolfcrypt/src/rsa.c in wolfSSL before 4.6.0 has an out-of-bounds write for certain relationships between key size and digest size.
- CVSS 3.1
- 9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 3.52% probability · 89th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-787
- Affected
- wolfssl/wolfssl
- Source
- cve@mitre.org
References
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=26567Exploit, Mailing List, Third Party Advisory
- https://github.com/wolfSSL/wolfssl/commit/63bf5dc56ccbfc12a73b06327361687091a4c6f7Patch, Third Party Advisory
- https://github.com/wolfSSL/wolfssl/commit/fb2288c46dd4c864b78f00a47a364b96a09a5c0fPatch, Third Party Advisory
- https://github.com/wolfSSL/wolfssl/pull/3426Patch, Third Party Advisory
- https://github.com/wolfSSL/wolfssl/releases/tag/v4.6.0-stableThird Party Advisory
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=26567Exploit, Mailing List, Third Party Advisory
- https://github.com/wolfSSL/wolfssl/commit/63bf5dc56ccbfc12a73b06327361687091a4c6f7Patch, Third Party Advisory
- https://github.com/wolfSSL/wolfssl/commit/fb2288c46dd4c864b78f00a47a364b96a09a5c0fPatch, Third Party Advisory
- https://github.com/wolfSSL/wolfssl/pull/3426Patch, Third Party Advisory
- https://github.com/wolfSSL/wolfssl/releases/tag/v4.6.0-stableThird Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.