
CVE-2026-32877 Botan is a C++ cryptography library. From version 2.3.0 to before version 3.11.0, during SM2 decryption, the code that checked the authentication code value (C3) fail… https://www.cve.org/CVERecord?id=CVE-2026-32877
Post summary
CVE-2026-32877 reveals a flaw in Botan’s SM2 decryption where the authentication code (C3) check fails for versions 2.3.0 through before 3.11.0.


