JLSEC-2026-752 Low 1.0
Integer underflow in `wc_PKCS7_DecryptOri` when handling crafted Other Recipient Info, leading to...
Integer underflow in wc_PKCS7_DecryptOri when handling crafted Other Recipient Info, leading to incorrect length handling during decryption.
References
- https://github.com/advisories/GHSA-p894-8wv9-373j
- https://github.com/wolfSSL/wolfssl/pull/10203
- https://nvd.nist.gov/vuln/detail/CVE-2026-6678
- https://www.talosintelligence.com/vulnerability_reports/TALOS-2026-2408
- https://www.wolfssl.com/docs/security-vulnerabilities
- https://www.wolfssl.com/docs/security-vulnerabilities/