CyberRota Analysis
AI-GeneratedVersions of wolfSSL up to 5.9.2 are vulnerable due to a flaw in the X.509 certificate validation logic, which improperly enforces NameConstraints extensions, allowing unauthorized certificates to be accepted for certain hostnames. This vulnerability can lead to potential man-in-the-middle attacks, as it undermines the intended cryptographic delegation controls. Organizations using wolfSSL for secure communications should prioritize patching this issue to maintain the integrity of their certificate validation processes.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
wolfSSL versions 5.9.2 and earlier contain a flaw in the X.509 certificate validation logic where it fails to properly enforce NameConstraints extensions when there is an unconstrained CA tier between a name-constrained intermediate CA and the leaf certificate. wolfSSL incorrectly accepted certificates for hostnames they shouldn't be allowed to cover, due to a chain-walking state-machine bug that resets the validation state when encountering an intermediate without NameConstraints, thereby bypassing cryptographic delegation controls. This defect exists in the default build configuration that makes use of certificates where name constraint extensions are used. Thanks to Jack Lloyd, PathDiff, and Ben Smyth for reporting the issue.
Related CVEs
Other vulnerabilities affecting the same vendor(s)