CVE-2026-95208
Description
AI Translation Available
An issue in the ConfirmNameConstraints() function (wolfcrypt/src/asn.c) of wolfSSL v5.9.1 and v5.9.2 allows attackers to cause a Denial of Service (DoS) via providing crafted Certificate Authority certificates, leading to valid certificates without SAN to be incorrectly rejected by wolfSSL-based TLS clients.
https://gist.github.com/lkloliver/14edf8bbfbf5769949b85c7f5cc2eba2
http://wolfssl.com