CVE-2026-3549
UNKNOWN
NVD
CVSS Score
0
Severity
UNKNOWN
Published
Mar 19, 2026
Vendor
unknown
Description
Heap Overflow in TLS 1.3 ECH parsing. An integer underflow existed in ECH extension parsing logic when calculating a buffer length, which resulted in writing beyond the bounds of an allocated buffer. Note that in wolfSSL, ECH is off by default, and the ECH standard is still evolving.