โ† Back to all CVEs

CVE-2026-3549

UNKNOWN NVD
CVSS Score 0
Severity UNKNOWN
Published Mar 19, 2026
Vendor unknown

Description

Heap Overflow in TLS 1.3 ECH parsing. An integer underflow existed in ECH extension parsing logic when calculating a buffer length, which resulted in writing beyond the bounds of an allocated buffer. Note that in wolfSSL, ECH is off by default, and the ECH standard is still evolving.

References