CVE-2026-41676Disclosure(rust-openssl_project / rust-openssl)

LOWCVSS 7.5 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

rust-openssl provides OpenSSL bindings for the Rust programming language. From 0.9.27 to before 0.10.78, Deriver::derive (and PkeyCtxRef::derive) sets len = buf.len() and passes it as the in/out length to EVP_PKEY_derive, relying on OpenSSL to honor it. On OpenSSL 1.1.x, X25519, X448, DH and HKDF-extract ignore the incoming *keylen, unconditionally writing the full shared secret (32/56/prime-size bytes). A caller passing a short slice gets a heap/stack overflow from safe code. OpenSSL 3.x providers do check, so this only impacts older OpenSSL. This vulnerability is fixed in 0.10.78.

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-131CWE-787

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • rust-openssl

Threat summary

  • Public PoC is present in monitored signal
  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Technical details provided in 3 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked 1d ago at 2 mentions (2026-04-23); latest day: 1
  • 3 total mentions across 2 days

Affected systems

Products
rust-openssl

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-04-23: 2Mentions · 2026-04-24: 1PoC Mentioned / Linked · 2026-04-23: 1Technical Details · 2026-04-23: 2Technical Details · 2026-04-24: 104-2304-24
Signal classification2 categories
Disclosure
266.7%
General
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-04-232
Disclosure1General1
2026-04-241
Disclosure1
Full discourse3 posts
  • PulsePatch.io@pulsepatchio
    Disclosure

    A buffer overflow (CVE-2026-41676) affects `rust-openssl` when using `OpenSSL 1.1.1`, potentially causing DoS. Review usage of `Deriver::derive` and `PkeyCtxRef::derive`. #Rust #OpenSSL #infosec https://www.pulsepatch.io/posts/cve-2026-41676-rust-openssl-buffer-overflow

    Post summary

    The post announces a buffer overflow vulnerability (CVE-2026-41676) in rust‑openssl with OpenSSL 1.1.1 that may cause denial of service, and provides a link for further details.

    0000169
    12 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-41676 rust-openssl provides OpenSSL bindings for the Rust programming language. From 0.9.27 to before 0.10.78, Deriver::derive (and PkeyCtxRef::derive) sets len = buf.len(… https://www.cve.org/CVERecord?id=CVE-2026-41676

    Post summary

    The text is a concise disclosure of CVE‑2026‑41676 for rust-openssl, specifying affected versions and affected derive functions, but it does not include PoC, exploit code, exploitation evidence, or patch information.

    00000124
    57.2K followersView on X
  • DailyCVE@dailycve
    General

    🔴 rust-openssl, Buffer Overflow, #CVE-2026-41676 (High) https://dailycve.com/rust-openssl-buffer-overflow-cve-2026-41676-high/

    Post summary

    The post announces CVE-2026-41676 as a high‑severity buffer overflow in rust‑openssl, but no PoC, exploitation details, patches, or mitigating information are provided.

    0000041
    183 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Apprust-openssl_projectrust-openssl-rust-

Explore more