CVE-2026-5477Disclosure(wolfssl / wolfssl)

LOWCVSS 7.5 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

An integer overflow existed in the wolfCrypt CMAC implementation, that could be exploited to forge CMAC tags. The function wc_CmacUpdate used the guard `if (cmac->totalSz != 0)` to skip XOR-chaining on the first block (where digest is all-zeros and the XOR is a no-op). However, totalSz is word32 and wraps to zero after 2^28 block flushes (4 GiB), causing the guard to erroneously discard the live CBC-MAC chain state. Any two messages sharing a common suffix beyond the 4 GiB mark then produce identical CMAC tags, enabling a zero-work prefix-substitution forgery. The fix removes the guard, making the XOR unconditional; the no-op property on the first block is preserved because digest is zero-initialized by wc_InitCmac_ex.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-190

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • wolfssl

Threat summary

  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked 2d ago at 1 mentions (2026-04-10); latest day: 1
  • 3 total mentions across 3 days

Affected systems

Vendors
Products
wolfssl

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-04-10: 1Mentions · 2026-04-11: 1Mentions · 2026-04-14: 1Technical Details · 2026-04-10: 1Technical Details · 2026-04-14: 104-1004-1104-14
Signal classification2 categories
Disclosure
266.7%
General
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-04-101
Disclosure1
2026-04-111
General1
2026-04-141
Disclosure1
Full discourse3 posts
  • CVE@CVEnew
    Disclosure

    CVE-2026-5477 An integer overflow existed in the wolfCrypt CMAC implementation, that could be exploited to forge CMAC tags. The function wc_CmacUpdate used the guard `if (cmac->total… https://www.cve.org/CVERecord?id=CVE-2026-5477

    Post summary

    CVE-2026-5477 describes an integer overflow in wolfCrypt CMAC that permits forging of CMAC tags, with no evidence of active exploitation, PoC, or patch information.

    0001095
    57.0K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-5477 Integer Overflow in wolfCrypt CMAC Implementation Enabling Tag Forgery https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-5477

    Post summary

    The text reports CVE-2026-5477 as an integer overflow in wolfCrypt’s CMAC that permits tag forgery, with only a reference link and no exploit, patch, or PoC details.

    0000032
    4.0K followersView on X
  • CVEarity@CVEarity
    General

    ⚡ New CVE Alert: CVE-2026-5477 📊 Severity: 8.2 🚨 Risk Level: High 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-5477 #CVE-2026-5477 #CVE #High #CyberSecurity #InfoSec https://t.co/SPPmQ0E4HZ

    Post summary

    The tweet announces CVE-2026-5477 with a severity rating, but provides no technical details, exploitation status, or remediation information.

    0000039
    125 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appwolfsslwolfssl---

Explore more