CVE-2026-0930
Discovered by AISLEPUBLISHEDCWE-126
Description
Potential read out of bounds case with wolfSSHd on Windows while handling a terminal resize request. An authenticated user could trigger the out of bounds read after establishing a connection which would leak the adjacent stack memory to the pseudo-console output.
CVSS Base Scores
CVSS v4.02.3
CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:L/VI:N/VA:L/SC:N/SI:N/SA:N
Affected Products
| Vendor | Product | Version | Status |
|---|---|---|---|
| wolfSSL | wolfSSH | 1.4.15 | affected |
Credits
- Luigino Camastra(finder)
- Pavel Kohout(finder)