Security Advisory

CVE-2014-2898

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-01-28 15:42:02
Last updated 2024-08-06 10:28:46
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

wolfSSL CyaSSL before 2.9.4 allows remote attackers to have unspecified impact via multiple calls to the CyaSSL_read function which triggers an out-of-bounds read when an error occurs, related to not checking the return code and MAC verification failure.