CVE-2014-2898
wolfSSL CyaSSL before 2.9.4 allows remote attackers to have unspecified impact via multiple calls to the CyaSSL_read fun
wolfSSL CyaSSL before 2.9.4 allows remote attackers to have unspecified impact via multiple calls to the CyaSSL_read function which triggers an out-of-bounds read when an error occurs, related to not checking the return code and MAC verification failure.
CRITICAL · CVSS 9.8
EPSS 0.01008
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0